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Foreword 

This Technical Specification has been produced by the 3GPP. 



This TS specifies the procedures used at the radio interface core network protocols within the 3''' generation mobile 
telecommunications system and the digital cellular telecommunications system. 

The contents of the present document are subject to continuing work within the TSG and may change following formal 
TSG approval. Should the TSG modify the contents of this TS, it will be re-released by the TSG with an identifying 
change of release date and an increase in version number as follows: 

Version x.y.z 

where: 

X the first digit: 

1 presented to TSG for information; 

2 presented to TSG for approval; 

3 Indicates TSG approved document under change control. 

y the second digit is incremented for all changes of substance, i.e. technical enhancements, corrections, 
updates, etc. 

z the third digit is incremented when editorial only changes have been incorporated in the specification; 



Introduction 

The present document includes references to features which are not part of the Phase 2+ Release 96 of the GSM 
Technical specifications. All subclauses which were changed as a result of these features contain a marker (see table 
below) relevant to the particular feature. 

The following table lists all features that were introduced after GSM Release 96. 



Feature 


Designator 


BA Range IE handling 


$(impr-BA-range-handling)$ 


Advanced Speech Call Item 


$(ASCI)$ 


Call Completion Busy Subscriber 


$(CCBS)$ 


Mobile Assisted Frequency Allocation 


$(MAFA)$ 


Network Indication of Alerting in IVIS 


$(NIA)$ 



£75/ 



(3G TS 24.008 version 3.2.1 Release 1 999) 21 ETSI TS 1 24 008 V3.2.1 (2000-01 ) 



Scope 



This TS specifies the procedures used at the radio interface (Reference Point Um, see GSM 04.02) for Call Control 
(CC), Mobility Management (MM), and Session Management (SM). 

When the notations for "further study" or "FS" or "FFS" are present in this TS they mean that the indicated text is not a 
normative portion of this standard. 

These procedures are defined in terms of messages exchanged over the control channels of the radio interface. The 
control channels are described in GSM 04.03. 

The structured functions and procedures of this protocol and the relationship with other layers and entities are described 
in general terms in TS 24.007. 

1 .1 Scope of the Technical Specification 

The procedures currently described in this TS are for the call control of circuit-switched connections, session 
management for GPRS services, mobility management and radio resource management for circuit-switched and GPRS 
services. 

TS 24.010 contains functional procedures for support of supplementary services. 

GSM 04. 1 1 contains functional procedures for support of point-to-point short message services. 

GSM 04. 12 contains functional description of short message - cell broadcast. 

GSM 04.60 contains procedures for radio link control and medium access control (RLC/MAC) of packet data physical 
channels. 

TS 24.071 contains functional descriptions and procedures for support of location services. 

NOTE: "layer 3" includes the functions and protocols described in this Technical Specification. The terms "data 
link layer" and "layer 2" are used interchangeably to refer to the layer immediately below layer 3. 

1 .2 Application to the interface structures 

The layer 3 procedures apply to the interface structures defined in GSM 04.03. They use the functions and services 
provided by layer 2 defined in GSM 04.05 and GSM 04.06. TS 24.007 gives the general description of layer 3 including 
procedures, messages format and error handling. 

1 .3 Structure of layer 3 procedures 

A building block method is used to describe the layer 3 procedures. 

The basic building blocks are "elementary procedures" provided by the protocol control entities of the three sublayers, 
i.e. radio resource management, mobility management and connection management sublayer. 

Complete layer 3 transactions consist of specific sequences of elementary procedures. The term "structured procedure" 
is used for these sequences. 

1 .4 Test procedures 

Test procedures of the GSM radio interface signalling are described in GSM 11.10 and GSM 1 1 .2x series. 



1 .5 Use of logical channels 



The logical control channels are defined in GSM 05.02. In the following those control channels are considered which 
carry signalling information or specific types of user packet information: 
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i) Broadcast Control CHannel (BCCH): downlink only, used to broadcast Cell specific information; 

ii) Synchronization CHannel (SCH): downlink only, used to broadcast synchronization and ESS identification 
information; 

iii) Paging CHannel (PCH): downlink only, used to send page requests to Mobile Stations (MSs); 

iv) Random Access CHannel (RACH): uplink only, used to request a Dedicated Control CHannel; 

v) Access Grant CHannel (AGCH): downlink only, used to allocate a Dedicated Control CHannel; 

vi) Standalone Dedicated Control CHannel (SDCCH): bi-directional; 

vii)Fast Associated Control CHannel (FACCH): bi-directional, associated with a Traffic CHannel; 

viii) Slow Associated Control CHannel (SACCH): bi-directional, associated with a SDCCH or a Traffic CHannel; 

ix) Cell Broadcast CHannel (CBCH): downlink only used for general (not point to point) short message information. 

x) Notification CHannel (NCH): downlink only, used to notify mobile stations of VBS (Voice Broadcast Service) 
calls or VGCS (Voice Group Call Service) calls. 

Two service access points are defined on signalling layer 2 which are discriminated by their Service Access Point 
Identifiers (SAPI) (see GSM 04.06): 

i) SAPI 0: supports the transfer of signalling information including user-user information; 

ii) SAPI 3: supports the transfer of user short messages. 

Layer 3 selects the service access point, the logical control channel and the mode of operation of layer 2 
(acknowledged, unacknowledged or random access, see GSM 04.05 and GSM 04.06) as required for each individual 

message. 

1 .6 Overview of control procedures 
1 .6.1 List of procedures 

The following procedures are specified in this Technical Specification: 
a) Clause 4 specifies elementary procedures for Mobility Management 
mobility management common procedures (subclause 4.3) 

TMSI reallocation procedure (subclause 4.3.1) 

authentication procedure (subclause 4.3.2) 

identification procedure (subclause 4.3.3) 

IMSI detach procedure (subclause 4.3.4) 

abort procedure (subclause 4.3.5) 

MM information procedure (subclause 4.3.6) 
mobility management specific procedures (subclause 4.4) 

location updating procedure (subclause 4.4.1) 
- periodic updating (subclause 4.4.2) 

IMSI attach procedure (subclause 4.4.3) 

generic location updating procedure (subclause 4.4) 
connection management sublayer service provision 
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mobility management connection establishment (subclause 4.5.1) 

mobility management connection information transfer phase (subclause 4.5.2) 

- mobility management connection release (subclause 4.5.3) 
GPRS specific mobility management procedures (subclause 4.7) 

GPRS attach procedure (subclause 4.7.3) 

GPRS detach procedure (subclause 4.7.4) 

GPRS routing area updating procedure (subclause 4.7.5) 

GPRS common mobility management procedures (subclause 4.7) 

GPRS P-TMSI reallocation procedure (subclause 4.7.6) 

GPRS authentication and ciphering procedure (subclause 4.7.7) 

GPRS identification procedure (subclause 4.7.8) 

GPRS information procedure (subclause 4.7. 12) 

b) Clause 5 specifies elementary procedures for circuit switched Call Control comprising the following elementary 
procedures: 

mobile originating call establishment (subclause 5.2. 1) 

mobile terminating call establishment (subclause 5.2.2) 

signalling procedures during the active state (subclause 5.3) 

user notification procedure (subclause 5.3.1) 

call rearrangements (subclause 5.3.2) 

DTMF protocol control procedure (subclause 5.5.7) 

in-call modification (subclause 5.3.4) 
call clearing initiated by the mobile station (subclause 5.4.3) 
call clearing initiated by the network (subclause 5.4.4) 
miscellaneous procedures 

in-band tones and announcements (subclause 5.5.1) 

status enquiry procedure (subclause 5.5.3) 

call re-establishment procedure (subclause 5.5.4) 

d) Clause 6 specifies elementary procedures for session management 

GPRS session management procedures (subclause 6.1) 

- PDP context activation (subclause 6. 1. 1) 

PDP context modification (subclause 6.1.2) 

PDP context deactivation (subclause 6.1.3) 

anonymous PDP context activation (subclause 6.1.4) 

anonymous PDP context deactivation (subclause 6. 1.5) 

The elementary procedures can be combined to form structured procedures. Examples of such structured procedures are 
given in clause 7. This part of the Technical Specification is only provided for guidance to assist implementations. 
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Clause 8 specifies actions to be taken on various error conditions and also provides rules to ensure compatibility with 
future enhancements of the protocol. 

1 .7 Applicability of implementations 

The applicability of procedures of this technical specification for the mobile station is dependent on the services and 
functions which are to be supported by a mobile station. 

1 .7.1 Voice Group Call Service (VGCS) and Voice Broadcast Service 
(VBS) 

For mobile stations supporting the Voice Group Call Service or the Voice Broadcast Service, it is explicitly mentioned 
throughout this technical specification if a certain procedure is applicable only for such a service and, if necessary, how 
mobile stations not supporting such a service shall behave. 

For VGCS and VBS, the following possible mobile station implementations exist: 

support of listening to voice broadcast calls (VBS listening) 

support of originating a voice broadcast call (VBS originating) 

support of listening to voice group calls (VGCS listening) 

support of talking in voice group calls (VGCS talking. This always includes the implementation for VGCS 
listening) 

support of originating a voice group call (VGCS originating. This always includes the implementation for VGCS 
talking) 

Apart from the explicitly mentioned combinations, all possible combinations are optional and supported by this 
technical specification. 

The related terms are used in this technical specification, if information on these implementation options is required. 

1 .7.2 General Packet Radio Service (GPRS) 

1 .7.2.1 Packet services in GSM (GSM only) 

For mobile stations supporting the General Packet Radio Service (GPRS), it is explicitly mentioned throughout the 
technical specification if a certain procedure is applicable only for such a service and, if necessary, how mobile stations 
not supporting such a service shall behave. 

A GPRS MS may operate in one of the following MS operation modes, see 03.60 [74]: 

- MS operation mode A; 

MS operation mode B; or 

MS operation mode C. 

The MS operation mode depends on the services that the MS is attached to, i.e., only GPRS or both GPRS and non- 
GPRS services, and upon the MS's capabilities to operate GPRS and other GSM services simultaneously. Mobile 
stations that are capable to operate GPRS services are referred to as GPRS MSs. 

NOTE: Other GSM technical specifications may refer to the MS operation modes A, B, and C as GPRS class-A 
MS, GPRS class-B MS, and GPRS class-C MS. 

It should be noted that it is possible that for a GPRS MS, the GMM procedures currently described in the ETS do not 
support combinations of VGCS, VBS and GPRS. The possible interactions are not studied yet. 

1 .7.2.2 Packet services in UMTS (UMTS only) 

An MS attached to packet switched domain may operate in one of the following MS operation modes, see 23.060 [74]: 
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PS/CS mode of operation; or 

PS mode of operation. 

The terms 'PS/CS mode of operation' and 'PS mode of operation' are not used in this specification with some 
exceptions. Instead the terms 'MS operation mode A' and 'MS operation mode C are used. 

In network operation mode I and II (see 23.060 [74]), an MS in PS/CS mode of operation shall use the same 
procedures as for a GPRS MS operating in MS operation mode A, unless it is explicitly stated for GSM only or 
UMTS only. 

In network operation mode I and II, an MS in PS mode of operation shall use the same procedures as for a GPRS MS 
operating in MS operation mode C, unless it is explicitly stated for GSM only or UMTS only. 

NOTE: Network operation mode III is not apphcable for UMTS, see 23.060 [74]. 



2 Normative references 

The following documents contain provisions which, through reference in this text, constitute provisions of the present 
document. 

References are either specific (identified by date of publication, edition number, version number, etc.) or 
non-specific. 

For a specific reference, subsequent revisions do not apply. 

For a non-specific reference, the latest version applies. 

A non-specific reference to an ETS shall also be taken to refer to later versions published as an EN with the same 
number. 

[I] GSM 01.02: "Digital cellular telecommunications system (Phase 2+); General description of a 
GSM PubUc Land Mobile Network (PLMN)". 

[2] GSM 01.04: "Digital cellular telecommunications system (Phase 2+); Abbreviations and 

acronyms". 

[2a] 3G Vocabulary 

[3] TS 22.002: "Digital cellular telecommunications system (Phase 2+); Bearer Services (BS) 

supported by a GSM Public Land Mobile Network (PLMN)". 

[4] TS 22.003: "Teleservices supported by a GSM Public Land Mobile Network (PLMN)". 

[5] GSM 02.09: "Digital cellular telecommunications system (Phase 2+); Security aspects". 

[6] TS 22.011: "Digital cellular telecommunications system (Phase 2+); Service accessibility". 

[7] GSM 02.17: "Digital cellular telecommunications system (Phase 2+); Subscriber identity modules 

Functional characteristics". 

[8] GSM 02.40: "Digital cellular telecommunications system (Phase 2+); Procedures for call progress 

indications". 

[9] GSM 03.01: "Digital cellular telecommunications system (Phase 2+); Network functions". 

[10] TS 23.003: "Digital cellular telecommunications system (Phase 2+); Numbering, addressing and 

identification". 

[II] GSM 03.13: "Digital cellular telecommunications system (Phase 2+); Discontinuous Reception 
(DRX) in the GSM system". 

[12] TS 23.014: "Digital cellular telecommunications system (Phase 2+); Support of Dual Tone Multi- 

Frequency signalling (DTMF) via the GSM system". 



£75/ 



(3G TS 24.008 version 3.2.1 Release 1 999) 26 ETSI TS 1 24 008 V3.2.1 (2000-01 ) 

[12a] TS 23.071: "Digital cellular telecommunications system (Phase 2+); Location Services; Functional 

description - Stage 2". 

[13] GSM 03.20: "Digital cellular telecommunications system (Phase 2+); Security related network 

functions". 

[14] TS 23.122: "NAS Functions related to Mobile Station (MS) in idle mode". 

[15] GSM 04.02: "Digital cellular telecommunications system (Phase 2+); GSM Public Land Mobile 

Network (PLMN) access reference configuration". 

[16] GSM 04.03: "Digital cellular telecommunications system (Phase 2+); Mobile Station - Base 

Station System (MS - BSS) interface Channel structures and access capabilities". 

[17] GSM 04.04: "Digital cellular telecommunications system (Phase 2+); layer 1 General 

requirements". 

[18] GSM 04.05: "Digital cellular telecommunications system (Phase 2+); Data Link (DL) layer 

General aspects". 

[19] GSM 04.06: "Digital cellular telecommunications system (Phase 2+); Mobile Station - Base 

Station System (MS - BSS) interface Data Link (DL) layer specification". 

[20] TS 24.007: "Digital cellular telecommunications system (Phase 2+); Mobile radio interface 

signalling layer 3 General aspects". 

[21] TS 24.010: "Digital cellular telecommunications system ; Mobile radio interface layer 3 

Supplementary services specification General aspects". 

[22] TS 24.01 1 : "Point-to-Point (PP) Short Message Service (SMS) support on mobile radio interface". 

[23] TS 24.012: "Short Message Service Cell Broadcast (SMSCB) support on the mobile radio 

interface". 

[23a] TS 24.071: "Digital cellular telecommunications system (Phase 2+); Mobile radio interface layer 3 

location services specification. 

[23b] GSM 04.31 "Digital cellular telecommunication system (Phse 2+);Location Services;Mobile 

Station (MS) - Serving Mobile Location Centre (SMLC); Radio Resource LCS Protocol (RRLP)". 

[24] TS 24.080: "Digital cellular telecommunications system (Phase 2+); Mobile radio interface layer 3 

supplementary services specification Formats and coding". 

[25] TS 24.081: "Digital cellular telecommunications system (Phase 2+); Line identification 

supplementary services - Stage 3". 

[26] TS 24.082: "Digital cellular telecommunications system (Phase 2+); Call Forwarding (CF) 

supplementary services - Stage 3". 

[27] TS 24.083: "Digital cellular telecommunications system (Phase 2+); Call Waiting (CW) and Call 

Hold (HOLD) supplementary services - Stage 3". 

[28] TS 24.084: "Digital cellular telecommunications system (Phase 2+); MultiParty (MPTY) 

supplementary services - Stage 3". 

[29] TS 24.085: "Digital cellular telecommunications system (Phase 2+); Closed User Group (CUG) 

supplementary services - Stage 3". 

[30] TS 24.086: "Digital cellular telecommunications system (Phase 2+); Advice of Charge (AoC) 

supplementary services - Stage 3". 

[31] TS 24.088: "Call Barring (CB) supplementary services - Stage 3". 

[32] GSM 05.02: "Digital cellular telecommunications system (Phase 2+); Multiplexing and multiple 

access on the radio path". 

[33] GSM 05.05: "Digital cellular telecommunications system (Phase 2+); Radio transmission and 

reception". 
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[34] GSM 05.08: "Digital cellular telecommunications system (Phase 2+); Radio subsystem link 

control". 

[35] GSM 05.10: "Digital cellular telecommunications system (Phase 2+); Radio subsystem 

s ynchroniz ation " . 

[36] TS 27.001 : "General on Terminal Adaptation Functions (TAF) for Mobile Stations (MS)". 

[37] TS 29.002: "Digital cellular telecommunications system (Phase 2+); Mobile Application Part 

(MAP) specification". 

[38] TS 29.007: "Digital cellular telecommunications system (Phase 2+); General requirements on 

interworking between the Public Land Mobile Network (PLMN) and the Integrated Services 
Digital Network (ISDN) or Public Switched Telephone Network (PSTN)". 

[39] GSM 11.10: "Digital cellular telecommunications system (Phase 2+); Mobile Station (MS) 

conformity specification". 

[40] GSM 11.21: "Digital cellular telecommunications system (Phase 2); The GSM Base Station 

System (BSS) equipment specification". 

[41] ISO/IEC 646 (1991): "Information technology - ISO 7-bit coded character set for information 

interchange". 

[42] ISO/IEC 6429: "Information technology - Control functions for coded character sets". 

[43] ISO 8348 (1987): "Information processing systems - Data communications - Network service 

definition". 

[44] CCITT Recommendation E. 163: "Numbering plan for the international telephone service". 

[45] CCITT Recommendation E. 164: "Numbering plan for the ISDN era". 

[46] CCITT Recommendation E.212: "Identification plan for land mobile stations". 

[47] ITU-T Recommendation F.69 (1993): "Plan for telex destination codes". 

[48] CCITT Recommendation 1.330: "ISDN numbering and addressing principles". 

[49] CCITT Recommendation 1.440 (1989): "ISDN user-network interface data link layer - General 

aspects". 

[50] CCITT Recommendation 1.450 (1989): "ISDN user-network interface layer 3 General aspects". 

[51] ITU-T Recommendation 1.500 (1993): "General structure of the ISDN interworking 

recommendations" . 

[52] CCITT Recommendation T.50: "International Alphabet No. 5". 

[53] ITU Recommendation Q.931: ISDN user-network interface layer 3 specification for basic control". 

[54] CCITT Recommendation V.21: "300 bits per second duplex modem standardized for use in the 

general switched telephone network". 

[55] CCITT Recommendation V.22: "1200 bits per second duplex modem standardized for use in the 

general switched telephone network and on point-to-point 2-wire leased telephone-type circuits". 

[56] CCITT Recommendation V.22bis: "2400 bits per second duplex modem using the frequency 

division technique standardized for use on the general switched telephone network and on point- 
to-point 2-wire leased telephone-type circuits". 

[57] CCITT Recommendation V.23: "600/1200-baud modem standardized for use in the general 

switched telephone network". 

[58] CCITT Recommendation V.26ter: "2400 bits per second duplex modem using the echo 
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[59] CCITT Recommendation V.32: "A family of 2-wire, duplex modems operating at data signalling 

rates of up to 9600 bit/s for use on the general switched telephone network and on leased 
telephone-type circuits". 

[60] CCITT Recommendation V. 1 10: "Support of data terminal equipments (DTEs) with V-Series 

interfaces by an integrated services digital network". 

[61] CCITT Recommendation V.120: "Support by an ISDN of data terminal equipment with V-Series 

type interfaces with provision for statistical multiplexing". 

[62] CCITT Recommendation X.21: "Interface between data terminal equipment (DTE) and data 

circuit-terminating equipment (DCE) for synchronous operation on public data networks". 

[63] CCITT Recommendation X.25: "Interface between data terminal equipment (DTE) and data 

circuit-terminating equipment (DCE) for terminals operating in the packet mode and connected to 
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2.1 Definitions and abbreviations 

Abbreviations used in this specification are listed in GSM 01.04 

2.1.1 Random values 

In a number of places in this Technical Specification, it is mentioned that some value must take a "random" value, in a 
given range, or more generally with some statistical distribution. Such cases interest only the Mobile Station. 

It is required that there is a low probability that two MSs in the same conditions (including the case of two MSs of the 
same type from the same manufacturer) will choose the same value. Moreover, it is required that, if it happens that two 
MSs in similar conditions choose the same value, the probability of their choices being identical at the next occasion is 
the same as if their first choices had been different. 

The meaning of such a specification is that any statistical test for these values, done on a series of similar events, will 
obtain a result statistically compatible with the specified distribution. This shall hold even in the cases where the tests 
are conducted with a subset of possible events, with some common parameters. Moreover, basic tests of independence 
of the values within the series shall pass. 

Data against which correlation with the values shall not be found are the protocol state, or the IMSI, or identities or 
other unrelated information broadcast by the network, or the current TDMA frame number. 

2.2.2 Vocabulary 

The following terms are used in this Technical Specification: 

idle mode: In this mode, the mobile station is not allocated any dedicated channel; it listens to the CCCH and the 
BCCH; 

group receive mode: (only applicable for mobile stations supporting VGCS listening or VBS listening) In this 
mode, the mobile station is not allocated a dedicated channel with the network; it listens to the downlink of a 
voice broadcast channel or voice group call channel allocated to the cell. Occasionally, the mobile station has to 
listen to the BCCH of the serving cell as defined in TS 23.022 and 05.08; 

dedicated mode: In this mode, the mobile station is allocated at least two dedicated channels, only one of them 
being a SACCH; 

group transmit mode: (only applicable for mobile stations supporting VGCS talking) In this mode, one mobile 
station of a voice group call is allocated two dedicated channels, one of them being a SACCH. These channels 
can be allocated to one mobile station at a time but to different mobile stations during the voice group call; 

packet idle mode: (only applicable for mobile stations supporting GPRS) In this mode, mobile station is not 
allocated any radio resource on a packet data physical channel; it listens to the PBCCH and PCCCH or, if those 
are not provided by the network, to the BCCH and the CCCH, see GSM 04.60. 

packet transfer mode: (only applicable for mobile stations supporting GPRS) In this mode, the mobile station is 
allocated radio resource on one or more packet data physical channels for the transfer of LLC PDUs. 

main DCCH: In Dedicated mode and group transmit mode, only two channels are used as DCCH, one being a 
SACCH, the other being a SDCCH or a FACCH; the SDCCH or FACCH is called here "the main DCCH"; 

- A channel is activated if it can be used for transmission, in particular for signalling, at least with UI frames. On 
the SACCH, whenever activated, it must be ensured that a contiguous stream of layer 2 frames is sent; 

A TCH is connected if circuit mode user data can be transferred. A TCH cannot be connected if it is not 
activated. A TCH which is activated but not connected is used only for signalling, i.e. as a DCCH; 

The data link of S API on the main DCCH is called the main signalling link. Any message specified to be sent 
on the main signalling link is sent in acknowledged mode except when otherwise specified; 

- The term "to establish" a link is a short form for "to establish the multiframe mode" on that data link. It is 
possible to send UI frames on a data link even if it is not established as soon as the corresponding channel is 
activated. Except when otherwise indicated, a data link layer establishment is done without an information field. 
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"channel set" is used to identify TCHs that carry related user information flows, e.g., in a multislot 
configuration used to support circuit switched connection(s), which therefore need to be handled together. 

A temporary block flow (TBF) is a physical connection used by the two RR peer entities to support the uni- 
directional transfer of LLC PDUs on packet data physical channels, see GSM 04.60. 

- RLC/MAC block: A RLC/MAC block is the protocol data unit exchanged between RLC/MAC entities, see 
GSM 04.60. 

A GMM context is established when a GPRS attach procedure is successfully completed. 

- Network operation mode 

The three different network operation modes I, II, and III are defined in TS 23.060 [74]. 

The network operation mode shall be indicated as system information. For proper operation, the network operation 
mode should be the same in each cell of one routing area. 

- GPRS MS operation mode 

The three different GPRS MS operation modes A, B, and C are defined in TS 23.060 [74]. 

- Anonymous access refers to limited service provisioning to an MS whose identity is unknown in the network. 

RR connection: A RR connection is a dedicated physical circuit switched domain connection used by the two 
RR or RRC peer entities to support the upper layers' exchange of information flows. 

PS signalling connection is a peer to peer UMTS connection between MS and CN packet domain node. 

Inter-System change is a change of radio access between different radio access technologies such as GSM and 
UMTS. 

- GPRS: Packet Services for GSM and UMTS system. 

The label (GSM only) indicates this section or paragraph applies only to GSM system. For multi system case 
this is determined by the current serving radio access network. 

The label (UMTS only) indicates this section or paragraph applies only to UMTS system. For multi system case 
this is determined by the current serving radio access network. 

In GSM,... Indicates this paragraph applies only to GSM System. For multi system case this is determined by 
the current serving radio access network. 

In UMTS,... Indicates this paragraph applies only to UMTS System. For multi system case this is determined by 
the current serving radio access network. 

SIM, Subscriber Identity Module (see TS GSM 02.17). This specification makes no distinction between SIM 
and USIM. 

- MS, Mobile Station. This specification makes no distinction between MS and UE. 



3 Radio Resource management procedures 

See 04.18 
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4 Elementary procedures for Mobility Management 

4.1 General 

This section describes the procedures used for mobility management for non-GPRS services and for GPRS-services at 
the radio interface (Reference Point Um and Uu). 

The main function of the Mobihty Management sublayer is to support the mobility of user terminals, such as informing 
the network of its present location and providing user identity confidentiality. 

A further function of the MM sublayer is to provide connection management services to the different entities of the 
upper Connection Management (CM) sublayer (see TS 24.007). 

There are two sets of procedures defined in this chapter: 

- MM procedures for non-GPRS services (performed by the MM entity of the MM sublayer); and 

- GMM procedures for GPRS services (performed by the GMM entity and GMM-AA entity of the MM sublayer), 
see TS 24.007 [20]. 

All the MM procedures described in this section can only be performed if a RR connection has been established 
between the MS and the network. Else, the MM sublayer has to initiate the establishment of a RR connection (see GSM 
04.18 section 3.3 and TS 25.331 section 8.2.3). The GMM procedures described in this section, use services provided 
by the RR sublayer without prior RR connection establishment. 

GMM procedures are mandatory and applicable only for GPRS MSs and networks supporting those MSs. For GPRS 
MSs which are IMSI attached for both GPRS and non-GPRS services, some MM procedures are replaced by GMM 
combined procedures provided that the network operates in network operation mode I, i.e. is supporting combined 
GMM procedures. GMM combined procedures are not applicable for the GPRS MS operation mode C but are 
mandatory for the GPRS MS operation modes A and B and networks supporting network operation mode I, see 
TS 23.060. 

4.1 .1 MM and GMM procedures 

4.1 .1 .1 Types of MM and GMM procedures 

Depending on how they can be initiated, three types of MM procedures can be distinguished: 

1) MM common procedures: 

A MM common procedure can always be initiated whilst a RR connection exists. The procedures belonging to 
this type are: 

Initiated by the network: 

TMSI reallocation procedure; 

authentication procedure; 

identification procedure; 
- MM information procedure; 

abort procedure. 

However, abort procedure is used only if an MM connection is being established or has already been 
established i.e. not during MM specific procedures or during IMSI detach procedure, see section 4.3.5. 

Initiated by the mobile station: 

IMSI detach procedure (with the exceptions specified in section 4.3.4). 
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ii) MM specific procedures: 

A MM specific procedure can only be initiated if no other MM specific procedure is running or no MM 
connection exists. The procedures belonging to this type are: 

normal location updating procedure; 

- periodic updating procedure; 

- IMSI attach procedure. 

iii) MM connection management procedures: 

These procedures are used to establish, maintain and release a MM connection between the mobile station and the 
network, over which an entity of the upper CM layer can exchange information with its peer. A MM connection 
establishment can only be performed if no MM specific procedure is running. More than one MM connection may be 
active at the same time. Depending on how they can be initiated, two types of GMM procedures can be distinguished: 

i) GMM common procedures: 

Initiated by the network when a GMM context has been established: 

- P-TMSI (re-) allocation; 

GPRS authentication and ciphering; 

- GPRS identification; 
GPRS information. 

ii) GMM specific procedures: 

Initiated by the network and used to detach the IMSI in the network for GPRS services and/or non-GPRS 
services and to release a GMM context: 

- GPRS detach. 

Initiated by the MS and used to attach or detach the IMSI in the network for GPRS services and/or non- 
GPRS services and to establish or release a GMM context: 

- GPRS attach and combined GPRS attach; 

- GPRS detach and combined GPRS detach. 

Initiated by the MS when a GMM context has been established: 

normal routing area updating and combined routing area updating; 

- periodic routing area updating. 

4.1 .1 .2 MM-GMM co-ordination for GPRS MS's 

4.1 .1 .2.1 GPRS MS operating in mode A or B in a network that operates in mode I 

If the network operates in mode I, GPRS MSs that operate in mode A or B and wish to be or are simultaneously IMSI 
attached for GPRS and non-GPRS services, shall use the combined GPRS attach and the combined and periodic routing 
area updating procedures instead of the corresponding MM specific procedures IMSI attach and normal and periodic 
location area updating. 

NOTE: A GPRS MS operating in mode A or B in a network that operates in mode I, shall perform the combined 
GPRS attach or routing area update procedure regardless the value of the ATT flag. 

If a GPRS MS is operating in mode A or B in a network that operates in mode I the IMSI detach shall be performed by 
the GMM using the combined GPRS detach procedure 

NOTE: A GPRS MS operating in mode A or B in a network that operates in mode I, shall perform the combined 
GPRS detach procedure regardless the value of the ATT flag. 
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A GPRS MS operating in mode A or B in network that operates in mode I, uses the combined GMM specific 
procedures in place of the MM specific procedures, so all conditions describing when to trigger a MM specific 
procedure listed in subsections 4.3 and 4.4 shall not apply. 

A GPRS MS operating in mode A or B in a network that operates in mode I should not use any MM timers relating to 
MM specific procedures, (e.g T3210, T3211, T3212, T3213) except in some error and abnormal cases. If the MM 
timers are already running, the MS should not react on the expiration of the timers. 

NOTE: Whenever GMM performs a combined GMM procedure, a GPRS MS enters the MM state MM 

LOCATION UPDATING PENDING in order to prevent the MM to perform a location update procedure. 

If the authentication procedure is performed by MM and the authentication is rejected by the network (i.e upon receive 
of AUTHENTICATION REJECT), the MS shall in addition set the GPRS update status to GU3 ROAMING NOT 
ALLOWED and shall, if available, delete the P-TMSI, P-TMSI signature, RAI and GPRS ciphering key sequence 
number stored. The SIM shall be considered as invalid for GPRS and non-GPRS services until switching off or the SIM 
is removed. The MS shall abort any GMM procedure and shall enter state GMM-DEREGISTERED. 

4.1 .1 .2.2 GPRS MS operating in mode A or B in a network that operates in mode II or III 

If the network operates in mode II or III, a GPRS MSs that operate in mode A or B and wish to be or are simultaneously 
IMSI attached for GPRS and non-GPRS services, shall use the MM specific procedures listed in subsections 4.3 and 4.4 
and the GMM specific procedures listed in subsections 4.7.3, 4.7.4 and 4.7.5. The applicability of periodic location 
updating is further specified in section 4.4.2 and the periodic routing area updating is specified in section 4.7.2.2. 

If the authentication procedure is performed by MM and the authentication is rejected by the network (i.e upon receive 
of AUTHENTICATION REJECT), the MS shall in addition set the GPRS update status to GU3 ROAMING NOT 
ALLOWED and shall, if available, delete the P-TMSI, P-TMSI signature, RAI and GPRS ciphering key sequence 
number stored. The SIM shall be considered as invalid for GPRS and non-GPRS services until switching off or the SIM 
is removed. The MS shall abort any GMM procedure and shall enter state GMM-DEREGISTERED. 

4.1 .2 MM sublayer states 

The description of the states for the MM sublayer is organized as follows. The main states for the MS side, related to 
the procedures, are described in section 4.1.2.1.1. The MM IDLE state is subdivided in substates for the description of 
the behaviour in idle mode (section 4.L2.1.2). This behaviour depends on an update status, described in 4.1.2.2. The 
states for the network side are described in 4.L2.3. 

4.1 .2.1 MM sublayer states in the mobile station 

In this section, the possible states for the MM sublayer in the mobile station is described. In figure 4.1/TS 24.008 an 
overview of the MM sublayer protocol is given. 

4.1.2.1.1 Main States 

NULL 

The mobile station is inactive (e.g. power down). Important parameters are stored. Only manual action by the 
user may transfer the MM sublayer to another state. 

3 LOCATION UPDATING INITIATED 

A location updating procedure has been started and the MM awaits a response from the network. The timer 
T3210 is running. 

5 WAIT FOR OUTGOING MM CONNECTION 

The MM connection establishment has been started, and the MM awaits a response from the network. The 
timer T3230 is running. 

6 MM CONNECTION ACTIVE 

The MM sublayer has a RR connection to its peer entity on the network side. One or more MM connections 
are active. 
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7 IMSI DETACH INITIATED 

The IMSI detach procedure has been started. The timer T3220 is running. 

8 PROCESS CM SERVICE PROMPT 

The MM sublayer has a RR connection to its peer entity on the network side. The Mobile Station has 
received a CM SERVICE PROMPT message but has not yet responded $(CCBS)$. 

9 WAIT FOR NETWORK COMMAND 

The MM sublayer has a RR connection to its peer entity in the network, but no MM connection is 
established. The mobile station is passive, awaiting further commands from the network. The timer T3240 
may be running. 

10 LOCATION UPDATE REJECTED 

A location updating procedure has been rejected and RR connection release is awaited. The timer T3240 is 
running. 
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Figure 4.1a / TS 24.008: Overview mobility management protocol / MS Side 
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Additions to Figure 4.1.a/TS 24.008 

13. WAIT FOR RR CONNECTION (LOCATION UPDATING) 

The MM sublayer has requested RR connection establishment for starting the location updating procedure. 

14. WAIT FOR RR CONNECTION (MM CONNECTION) 

The MM sublayer has requested RR connection establishment for dedicated mode for starting the MM 
connection establishment. 

15. WAIT FOR RR CONNECTION (IMSI DETACH) 

The MM sublayer has requested RR connection establishment for starting the IMSI detach procedure. 
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17. WAIT FOR REESTABLISH 

A lower layer failure has occurred and re-establishment may be performed from the disturbed CM layer 
entities. 

18. WAIT FOR RR ACTIVE 

The MM sublayer has requested activation of the RR sublayer. 

19. MM IDLE 

There is no MM procedure running and no RR connection exists except that a local MM context may exist 
when the RR sublayer is in Group Receive mode. This is a compound state, and the actual behaviour of the 
mobile station to Connection Management requests is determined by the actual substate as described 
hereafter. 

20. WAIT FOR ADDITIONAL OUTGOING MM CONNECTION. 

The MM connection establishment for an additional MM connection has been started, and the MM awaits 
response from the network. 

21. MM CONNECTION ACTIVE (GROUP TRANSMIT MODE) 

(Only applicable for mobile stations supporting VGCS talking:) The MM sublayer has a RR connection on 
the VGCS channel to its peer entity on the network side. Only one MM connection is active. 

22. WAIT FOR RR CONNECTION (GROUP TRANSMIT MODE) 

(Only applicable for mobile stations supporting VGCS talking:) The MM sublayer has requested to perform 
an uplink access on the VGCS channel. 

23. LOCATION UPDATING PENDING 

(Only applicable for GPRS MS operation modes A and B; not shown in figure 4.1a) A location updating has 
been started using the combined GPRS routing area updating procedure. 

24. IMSI DETACH PENDING 

(Only applicable for GPRS MS operation modes A and B; not shown in figure 4. la) An IMSI detach for non- 
GPRS services has been started using the combined GPRS detach procedure at not switching off. 

4.1 .2.1 .2 Substates of the MM IDLE state 

For the description of the behaviour of the MS the MM IDLE state is subdivided in several substates, also called the 
service states. The service state pertains to the whole MS (ME alone if no SIM is inserted, or ME plus SIM.). The 
service state depends on the update status (see 4.1.2.2) and on the selected cell. 

19.1 NORMAL SERVICE 

Valid subscriber data are available, update status is Ul, a cell is selected that belongs to the LA where the 
subscriber is registered. 

In this state, all requests from the CM layers are treated normally. 

19.2 ATTEMPTING TO UPDATE 

Valid subscriber data are available, update status is U2 and a cell is selected. Requests from upper layers are 
accepted. Emergency call requests are treated normally, otherwise the request triggers first a location 
updating attempt in the selected cell, and then triggers the needed procedure only in case of successful 
location updating, otherwise the request is rejected. 

19.3 LIMITED SERVICE 

Valid subscriber data are available, update status is U3, and a cell is selected, which is known not to be able 
to provide normal service. Only emergency services are offered. 

19.4 NO IMSI 
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No valid subscriber data (no SIM, or the SIM is not considered valid by the ME), and a cell is selected. Only 
emergency services are offered. 

19.5 NO CELL AVAILABLE 

No cell can be selected. This state is entered after a first intensive search failed (state 19.7). Cells are 
searched at a low rhythm. No services are offered. 

19.6 LOCATION UPDATE NEEDED 

Valid subscriber data are available, and for some reason a location updating must be done as soon as possible 
(for instance update status is Ul but the selected cell is not in the registered LA, or the timer has expired, ...). 
This state is usually of no duration, but can last, e.g., in the case of access class blocking. 

19.7 PLMN SEARCH 

The mobile station is searching for PLMNs, and the conditions for state 19.8 are not met. This state is ended 
when either a cell is selected (the new state is 19.1, 19.3 or 19.6), or when it is concluded that no cell is 
available for the moment (the new state is 19.5). 

19.8 PLMN SEARCH, NORMAL SERVICE 

Valid subscriber data are available, update status is Ul, a cell is selected which belongs to the LA where the 
subscriber is registered, and the mobile station is searching for PLMNs. This state is ended when either a cell 
is selected (the new state is 19.1, 19.3 or 19.6), or when it is concluded that no cell is available for the 
moment (the new state is 19.5). 

19.9 RECEIVING GROUP CALL (NORMAL SERVICE) 

Only applicable for mobile stations supporting VGCS listening or VBS listening. Valid subscriber data are 
available, update status is Ul, a VGCS channel or VBS channel is received in a cell that belongs to the LA 
where the subscriber is registered. 

In this state, only requests from the GCC or BCC layers are treated. 

19.10 RECEIVING GROUP CALL (LIMITED SERVICE) 

Only applicable for mobile stations supporting VGCS listening or VBS listening. Valid subscriber data are 
available, update status is U3, a VGCS channel or VBS channel is received in a cell which is known not to be 
able to provide normal service. 

In this state, only requests from the GCC or BCC layers for the reception of VGCS or VBS calls are treated 
and group call emergency services are offered. 

4.1.2.2 The update Status 

In parallel with the sublayer states described in section 4.1.2.1 and which control the MM sublayer protocol, an update 
status exists. 

The update status pertains to a specific subscriber embodied by a SIM. This status is defined even when the subscriber 
is not activated (SIM removed or connected to a switched-off ME). It is stored in a non volatile memory in the SIM. 
The update status is changed only as a result of a location updating procedure attempt (with the exception of an 
authentication failure and of some cases of CM service rejection). In some cases, the update status is changed as a result 
of a GPRS attach, GPRS routing area update, or network initiated GPRS detach procedure. 

Ul UPDATED 

The last location updating attempt was successful (correct procedure outcome, and the answer was 
acceptance from the network). With this status, the SIM contains also the LAI of the LA where the subscriber 
is registered, and possibly valid TMSI, integrity key, ciphering key and ciphering key sequence number. The 
"Location update status" stored on the SIM shall be "updated". 

U2 NOT UPDATED 

The last location updating attempt made failed procedurally (no significant answer was received from the 
network, including the cases of failures or congestion inside the network). 
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For this status, the SIM does not contain any valid LAI, TMSI, integrity key, ciphering key or ciphering key 
sequence number. For compatibility reasons, all these fields must be set to the "deleted" value at the moment 
the status is set to NOT UPDATED. However the presence of other values shall not be considered an error by 
the mobile station. The "Location update status" stored on the SIM shall be "not updated". 

U3 ROAMING NOT ALLOWED 

The last location updating attempt run correctly, but the answer from the network was negative (because of 
roaming or subscription restrictions). 

For this status, the SIM does not contain any valid LAI, TMSI, integrity key, ciphering key or ciphering key 
sequence number. For compatibility reasons, all these fields must be set to the "deleted" value at the moment 
the status is set to ROAMING NOT ALLOWED. However the presence of other values shall not be 
considered an error by the mobile station. The "Location update status" stored on the SIM shall be "Location 
Area not allowed". 

4.1 .2.3 MM sublayer states on the network side 

LIDLE 

The MM sublayer is not active except possibly when the RR sublayer is in Group Receive mode. 

2. WAIT FOR RR CONNECTION 

The MM sublayer has received a request for MM connection establishment from the CM layer. A RR 
connection to the mobile station is requested from the RR sublayer (i.e. paging is performed). 

3. MM CONNECTION ACTIVE 

The MM sublayer has a RR connection to a mobile station. One or more MM connections are active. 

4. IDENTIFICATION INITIATED 

The identification procedure has been started by the network. The timer T3270 is running. 

5. AUTHENTICATION INITIATED 

The authentication procedure has been started by the network. The timer T3260 is running. 

6. TMSI REALLOCATION INITIATED 

The TMSI reallocation procedure has been started by the network. The timer T3250 is running. 

7. SECURITY MODE INITIATED 

The security mode setting procedure has been requested to the RR sublayer. 

8a. WAIT FOR MOBILE ORIGINATED MM CONNECTION 

A CM SERVICE REQUEST message is received and processed, and the MM sublayer awaits the "opening 
message" of the MM connection. 

8b. WAIT FOR NETWORK ORIGINATED MM CONNECTION 

A CM SERVICE PROMPT message has been sent by the network and the MM sublayer awaits the "opening 
message" of the MM connection $(CCBS)$. 

9. WAIT FOR REESTABLISHMENT 

The RR connection to a mobile station with one or more active MM connection has been lost. The network 
awaits a possible re-establishment request from the mobile station. 

10. WAIT OF A GROUP CALL 

Only applicable in case for mobile station supporting VGCS talking. The MM sublayer has received a 
request for establishing a VGCS from the GCC sublayer. The request for establishing a VGCS channels is 
given to the RR sublayer. 
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11. GROUP CALL ACTIVE 

Only applicable in case of mobile station supporting VGCS talking. A VGCS channel is established by the 
RR sublayer. An RR connection to the talking mobile station can be established by the RR sublayer on the 
VGCS channel. The MM sublayer is active but no sending of MM message between the network and the 
mobile station has occurred. 

12. MM CONNECTION ACTIVE (GROUP CALL) 

Only applicable in case of mobile station supporting VGCS talking. The MM sublayer has a RR connection 
to the talking mobile station on the VGCS channel. Only one MM connection is active. 

13. WAIT FOR BROADCAST CALL 

Only applicable in case of VBS. The MM sublayer has received a request for a VBS establishment from the 
BCC sublayer. The request for establishment of VBS channels is given to the RR sublayer. 

14. BROADCAST CALL ACTIVE 

Only applicable in case of VBS. A VBS channel is established by the RR sublayer. The MM sublayer is 
active but no explicit MM establishment between the Network and the mobile station has occurred. 

4.1 .3 GPRS mobility management (GMM) sublayer states 

In this section, the GMM protocol of the MS and the network are described by means of two different state machines. In 
section 4.1.3.1, the states of the GMM entity in the MS are introduced. The behaviour of the MS depends on a GPRS 
update status that is described in section 4.1.3.2. The states for the network side are described in section 4.1.3.3. 

4.1 .3.1 GMM states in the MS 

In this section, the possible GMM states are described of a GMM entity in the mobile station. Section 4.1.3.1.1 
summarises the main states of a GMM entity, see figure 4.1b/TS 24.008. The substates that have been defined are 
described in section 4.1.3.1.2 and section 4.1.3.1.3. 

However, it should be noted that this section does not include a description of the detailed behaviour of the MS in the 
single states and does not cover abnormal cases. Thus, figure 4.1b/TS 24.008 is rather intended to give an overview of 
the state transitions than to be a complete state transition diagram. A detailed description of the behaviour of the MS is 
given in section 4.2. Especially, with respect to the behaviour of the MS in abnormal cases it is referred to section 4.7. 

4.1.3.1.1 Main States 

4.1.3.1.1.1 GMM-NULL 

The GPRS capability is disabled in the MS. No GPRS mobility management function shall be performed in this state. 

4.1.3.1.1.2 GMM-DEREGISTERED 

The GPRS capability has been enabled in the MS, but no GMM context has been established. In this state, the MS may 
establish a GMM context by starting the GPRS attach or combined GPRS attach procedure. 

4.1 .3.1 .1 .3 GMM-REGISTERED-INITIATED 

A GPRS attach or combined GPRS attach procedure has been started and the MS is awaiting a response from the 
network. 

4.1.3.1.1.4 GMM-REGISTERED 

A GMM context has been established, i.e. the GPRS attach or combined GPRS attach procedure has been successfully 
performed. In this state, the MS may activate PDP contexts, may send and receive user data and signalling information 
and may reply to a page request. Furthermore, cell and routing area updating are performed. 
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4.1 .3.1 .1 .5 GMM-DEREGISTERED-INITIATED 

The MS has requested release of the GMM context by starting the GPRS detach or combined GPRS detach procedure. 
This state is only entered if the MS is not being switched off at detach request. 

4.1 .3.1 .1 .6 GMM-ROUTING-AREA-UPDATING-INITIATED 

A routing area updating procedure has been started and the MS is awaiting a response from the network. 

4.1 .3.1 .1 .7 GMM-SERVIGE-REQUEST-INITIATED (UMTS only) 

A service request procedure has been started and the MS is awaiting a response from the network. 

4.1 .3.1 .2 Substates of state GMM-DEREGISTERED 

The GMM-DEREGISTERED state is subdivided into several substates as explained below. The substates pertain to the 
whole MS (ME alone if no SIM is inserted, or ME plus SIM). The selection of the appropriate substate depends on the 
GPRS update status, see section 4.1.3.2, and on the selected cell. 

4.1 .3.1 .2.1 GMM-DEREGISTERED. NORMAL-SERVICE 

Valid subscriber data is available, the GPRS update status is GUI or GU2, a cell has been selected. In this state, a 
request for GPRS attach is performed using the stored temporary mobile subscriber identity for GPRS (P-TMSI), 
routing area identification (RAI) and GPRS ciphering key sequence number in case of GUI. If the GPRS update status 
is GU2, the IMSI shall be used to attach for GPRS services. 

4.1 .3.1 .2.2 GMM-DEREGISTERED. LIMITED-SERVICE 

Valid subscriber data is available, GPRS update status is GU3, and a cell is selected, which is known not to be able to 
provide normal service. 

4.1 .3.1 .2.3 GMM-DEREGISTERED.ATTACH-NEEDED 

Valid subscriber data is available and for some reason a GPRS attach must be performed as soon as possible. This state 
is usually of no duration, but can last, e.g. if the access class is blocked. 

4.1 .3.1 .2.4 GMM-DEREGISTERED.ATTEMPTING-TO-ATTACH 

The GPRS update status is GU2, a cell is selected, a previous GPRS attach was rejected. The execution of further attach 
procedures depends on the GPRS attach attempt counter. No GMM procedure except GPRS attach shall be initiated by 
the MS in this substate. 

4.1 .3.1 .2.5 GMM-DEREGISTERED. NO-IMSI 

No valid subscriber data is available (no SIM, or the SIM is not considered valid by the ME) and a cell has been 
selected. 

4.1 .3.1 .2.6 GMM-DEREGISTERED. NO-CELL-AVAILABLE 

No cell can be selected. This substate is entered after a first intensive search failed (substate PLMN SEARCH). Cells 
are searched for at a low rhythm. No services are offered. 

4.1 .3.1 .2.7 GMM-DEREGISTERED. PLMN-SEARCH 

The mobile station is searching for PLMNs. This substate is left either when a cell has been selected (the new substate 
is NORMAL-SERVICE or LIMITED-SERVICE) or when it has been concluded that no cell is available at the moment 
(the new substate is NO-CELL-AVAILABLE). 

4.1 .3.1 .2.8 GMM-DEREGISTERED. SUSPENDED (GSM only) 

The MS shall enter this substate when entering dedicated mode and the MS limitations make it unable to communicate 
on GPRS channels. The MS shall leave this substate when leaving dedicated mode. 
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4.1 .3.1 .3 Substates of state GMM-REGISTERED 

The state GMM-REGISTERED is subdivided into several substate as explained below. The substates pertain to the 
whole MS (ME alone if no SIM is inserted, or ME plus SIM.). 

4.1 .3.1 .3.1 GMM-REGISTERED. NORMAL-SERVICE 
User data and signalling information may be sent and received. 

4.1 .3.1 .3.2 GMM-REGISTERED. SUSPENDED (GSM only) 

The MS shall enter this substate when entering dedicated mode and when the MS limitations makes it unable to 
communicate on GPRS channels... In this substate, no user data should be sent and no signalling information shall be 
sent. The MS shall leave this substate when leaving dedicated mode. 

4.1 .3.1 .3.3 GMM-REGISTERED. UPDATE-NEEDED 

The MS has to perform a routing area updating procedure, but its access class is not allowed in the cell. The procedure 
will be initiated as soon as access is granted (this might be due to a cell-reselection or due to change of the access class 
of the current cell). No GMM procedure except routing area updating shall be initiated by the MS in this substate. In 
this substate, no user data and no signalling information shall be sent. 

4.1 .3.1 .3.4 GMM-REGISTERED.ATTEMPTING-TO-UPDATE 

A routing area updating procedure failed due to a missing response from the network. The MS retries the procedure 
controlled by timers and a GPRS attempt counter. No GMM procedure except routing area updating shall be initiated by 
the MS in this substate. No data shall be sent or received. 

4.1 .3.1 .3.5 GMM-REGISTERED. NO-GELL-AVAILABLE 

GPRS coverage has been lost. In this substate, the MS shall not initiate any GMM procedures except of cell (and 
PLMN) reselection. 
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Figure 4.1b/TS 24.008:GMM main states in the IVIS 



4.1.3.1.3.6 



GMM-REGISTERED. LIMITED-SERVICE 



A cell is selected, which is known not to be able to provide normal service. The MS will remain in this sub-state until a 
cell is selected which is able to provide normal service. 



4.1.3.1.3.7 



GMM-REGISTERED.ATTEMPTING-TO-UPDATE-MM 



A combined routing area updating procedure or a combined GPRS attach procedure was successful for GPRS services 
only. The MS retries the procedure controlled by timers and a GPRS attempt counter. User data and signalling 
information may be sent and received. 



4.1.3.2 



GPRS update status 



In addition to the GMM sublayer states described so far, a GPRS update status exists. 

The GPRS update status pertains to a specific subscriber embodied by a SIM. This status is defined even when the 
subscriber is not activated (SIM removed or connected to a switched off ME). It is stored in a non volatile memory in 
the SIM. The GPRS update status is changed only after execution of a GPRS attach, network initiated GPRS detach, 
authentication procedure, or routing area updating procedure. 

GUI: UPDATED 

The last GPRS attach or routing area updating attempt was successful (correct procedure outcome, and the 
answer was accepted by the network). The SIM contains the RAI of the routing area (RA) to which the 
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subscriber was attached, and possibly a valid P-TMSI, GPRS ciphering key, GPRS integrity key and GPRS 
ciphering key sequence number. 

GU2: NOT UPDATED 

The last GPRS attach or routing area updating attempt failed procedurally, i.e. no response was received from 
the network. This includes the cases of failures or congestion inside the network. 

In this case, the SIM may contain the RAI of the routing area (RA) to which the subscriber was attached, and 
possibly also a valid P-TMSI, GPRS ciphering key, GPRS integrity key and GPRS ciphering key sequence 
number. For compatibility reasons, all these fields shall be set to the "deleted" value if the RAI is deleted. 
However, the presence of other values shall not be considered an error by the MS. 

GU3: ROAMING NOT ALLOWED 

The last GPRS attach or routing area updating attempt was correctly performed, but the answer from the network 
was negative (because of roaming or subscription restrictions). 

For this status, the SIM does not contain any valid RAI, P-TMSI, GPRS ciphering key or GPRS ciphering key 
sequence number. For compatibility reasons, all these fields must be set to the value "deleted" at the moment the 
status is set to ROAMING NOT ALLOWED. However, the presence of other values shall not be considered an 
error by the MS. 

4.1 .3.3 GMM mobility management states on the network side 

In this subsection, the possible states are described for the GMM on the network side. Section 4.L3.3.1 summarises the 
main states. The corresponding substates are described in section 4.1.3.3.2. 

However, it should be noted that this section does not include a description of the detailed behaviour of the network in 
the single states and does not cover abnormal cases. Thus, figure 4.1c/TS 24.008 is rather intended to give an overview 
of the state transitions than to be a complete state transition diagram. A detailed description of the behaviour of the MS 
is given in section 4.2. Especially, with respect to the behaviour of the MS in abnormal cases it is referred to section 4.7. 

4.1.3.3.1 Main states 

4.1.3.3.1.1 GMM-DEREGISTERED 

The network has no GMM context or the GMM context is marked as detached, the MS is detached. In this state, the 
network may answer to a GPRS attach or combined GPRS attach procedure initiated by the MS. 

4.1 .3.3.1 .2 GMM-COMMON-PROCEDURE-INITIATED 

A common GMM procedure, as defined in section 4. LI, has been started. The network is awaiting the answer from the 
MS. 

4.1.3.3.1.3 GMM-REGISTERED 

The GMM context has been established and the GPRS attach procedure has been successfully performed. 

4.1 .3.3.1 .4 GMM-DEREGISTERED-INITIATED 

The network has started a GPRS detach procedure and is awaiting the answer from the MS. 
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Figure 4.1c/TS 24.008: GMM main states on the networit side 

4.1 .3.3.2 Substates of state GMM-REGISTERED 

The state GMM-REGISTERED is subdivided into two substates as explained below. 

4.1 .3.3.2.1 GMM-REGISTERED. NORMAL-SERVICE 
User data and signalling information may be sent and received. 

4.1 .3.3.2.2 GMM-REGISTERED. SUSPENDED (GSM only) 

In this substate, the lower layers shall be prevented of sending user data or signalling information. 

4.2 Behaviour of the MS in IVIIVI Idle state, GMM- 

DEREGISTERED state and GMM-REGISTERED state 

In this section, the detailed behaviour of the MS in the main states MM IDLE, GMM-DEREGISTERED and GMM- 
REGISTERED is described. Sections 4.2.1 to 4.2.3 refer to the state MM IDLE, whereas section 4.2.4 and section 4.2.5 
refer to the states GMM-DEREGISTERED and GMM-REGISTERED, respectively. 

The MM IDLE state is entered when none of the MM procedures are running and no RR connection exists. It is left 
when one of the MM procedures are triggered or a RR connection is established. 

The specific behaviour in the MM IDLE state depends on the service state of the mobile station as described in section 
4.1.2.1.2. The service state depends in particular on the update status which is defined in section 4. 1.2.2. 

How an appropriate service state is chosen after power on is described in section 4.2.1, and the specific behaviour of the 
mobile station in MM IDLE state is described in section 4.2.2. The service state chosen when the MM IDLE state is 
returned to from any state except NULL state is described in 4.2.3. 

It should be noted that transitions between the various MM idle states are caused by (e.g.): 
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- results of procedures on RR connected mode (see section 4.2.3); 
insertion or removal of the SIM; 

cell selection/reselection (see also TS 23.022); 

- PLMN search; 

loss of coverage. 

How various MM procedures affects the service state and the update status is described in the detailed descriptions of 
the procedures in sections 4.3 to 4.5. 

4.2.1 Primary Service State selection 

4.2.1 .1 Selection of the Service State after Power On. 

When mobility management is activated after power-on, the service state is 19.7 PLMN SEARCH. The detailed 
processing in this state is described in detail in TS 23.022 and 05.08, where procedures for power on and selection of 
PLMN is described in detail. If the "Location update status" stored on the SIM is different from "updated", then the 
mobile shall act as if the "Location update status" stored on the SIM is "not updated". 

The service state when the PLMN SEARCH state is left depends on the outcome of the search and on the presence of 
the SIM: 

if no cell has been found, the state is NO CELL AVAILABLE, until a cell is found; 

- if no SIM is present the state is NO IMSI; 

if the mobile station has been continuously activated since loosing coverage and then returns to coverage, and if 
the selected cell is in the location area where the mobile station is registered and the timer T3212 has not 
expired, then the state is NORMAL SERVICE; 

if the selected cell is in the location area where the mobile station is registered and IMSI ATTACH is not 
required and timer T3212 has not expired, then the state is NORMAL SERVICE; 

if the mobile station is in automatic network selection mode and the selected cell is in a forbidden PLMN or a 
forbidden LA, then the mobile station enters the LIMITED SERVICE state; 

if the mobile station is in manual network selection mode and no cell of the selected PLMN has been found, then 
the mobile station enters the LIMITED SERVICE state; 

- otherwise, the mobile station enters the LOCATION UPDATE NEEDED state. 

4.2.1.2 Other Cases 

The state PLMN SEARCH is also entered in the following cases: 

- In state NO IMSI, a SIM is inserted; 

- In any state except NO IMSI, NO CELL AVAILABLE, NORMAL SERVICE and RECEIVING GROUP CALL 
(NORMAL SERVICE) after the user has asked for a PLMN selection; 

- In any state except NO IMSI and NO CELL AVAILABLE, coverage is lost; 

Roaming is denied; 

optionally, when the mobile station is in the ATTEMPTING TO UPDATE state and is in Automatic Network 
Selection mode and location update attempt counter is greater than or equal to 4. 

The service state when the PLMN SEARCH is left depends on the outcome of the search and on the presence of the 
SIM as specified in paragraph 4.2.1.1. 
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4.2.2 Detailed Description of tine MS beinaviour in MM IDLE State. 

In the MM IDLE state the mobile station shall behave according to the service state. In the following sections the 
behaviour is described for the non transient service states. It should be noted that after procedures in RR connected 
mode, e.g. location updating procedures, section 4.2.3 applies which specifies the selection of the MM idle state. 
Furthermore when in sub-state NORMAL SERVICE, if a PLMN selection is requested, the MS enters sub-state 
SEARCH FOR PLMN, NORMAL SERVICE. 

4.2.2.1 Service State, NORMAL SERVICE 

When in state MM IDLE and service state NORMAL SERVICE, the mobile station shall: 

- perform normal location updating when a new location area is entered; 

- perform location updating procedure at expiry of timer T321 1 or T3213; 

- perform periodic updating at expiration of timer T3212; 

- perform IMSI detach; 

support requests from the CM layer; 

- respond to paging. 

In addition, mobile stations supporting VGCS listening or VBS listening shall: 
indicate notifications to the GCC or BCC sublayer; 

- respond to notification if the GCC or BCC sublayer requests the reception of a voice group or broadcast call for 
which no channel description has been received in the notification by the RR sublayer; 

- request the RR sublayer to receive a voice group or broadcast call if the GCC or BCC sublayer requests the 
reception of a voice group or broadcast call for which a channel description has been received in the notification 
by the RR sublayer and then go to the service state RECEIVING GROUP CALL (NORMAL SERVICE). 

4.2.2.2 Service State, ATTEMPTING TO UPDATE 

When in state MM IDLE and service state ATTEMPTING TO UPDATE the mobile station shall: 

- perform location updating procedure at expiry of timer T3211 or T3213; 

- perform normal location updating when the location area identification of the serving cell changes; 

if entry into this state was caused by c) or d) or f) (with cause different from "abnormal release, unspecified") or 
g) (with cause "retry upon entry into a new cell") of section 4.4.4.9, then location updating shall be performed 
when a new cell is entered; 

if entry into this state was caused by e) or f) (with cause "abnormal release, unspecified") or g) (with cause 
different from "retry upon entry into a new cell") of section 4.4.4.9, then location updating shall not be 
performed because a new cell is entered; 

- perform normal location updating at expiry of timer T3212; 
not perform IMSI detach; 

support request for emergency calls; 

use other request from CM layer as triggering of normal location updating procedure (if the location updating 
procedure is successful, then the request for MM connection is accepted, see section 4.5.1); 

- respond to paging (with IMSI). 

In addition, mobile stations supporting VGCS listening or VBS listening shall: 

indicate notifications to the GCC or BCC sublayer for which a channel description has been received in the 
notification by the RR sublayer; 
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- reject requests of the GCC or BCC sublayer to respond to notifications for which no channel description has 
been received in the notification by the RR sublayer; 

- request the RR sublayer to receive a voice group or broadcast call if the GCC or BCC sublayer requests the 
reception of a voice group or broadcast call for which a channel description has been received in the notification 
by the RR sublayer and then go to the service state RECEIVING GROUP CALL (LIMITED SERVICE). 

4.2.2.3 Service State, LIMITED SERVICE 

When in state MM IDLE and service state LIMITED SERVICE the mobile station shall: 
not perform periodic updating; 
not perform IMSI detach; 

- reject any requests from CM entities for MM connections except for emergency calls; 

- perform normal location updating when a cell is entered which may provide normal service (e.g. location area 
not in one of the forbidden LAI lists.); 

- it may respond to paging (with IMSI). 

In addition, mobile stations supporting VGCS listening or VBS listening shall: 

indicate notifications to the GCC or BCC sublayer for which a channel description has been received in the 
notification by the RR sublayer; 

- reject requests of the GCC or BCC sublayer to respond to notifications for which no channel description has 
been received in the notification by the RR sublayer; 

- request the RR sublayer to receive a voice group or broadcast call if the GCC or BCC sublayer requests the 
reception of a voice group or broadcast call for which a channel description has been received in the notification 
by the RR sublayer and then go to the service state RECEIVING GROUP CALL (LIMITED SERVICE). 

4.2.2.4 Service State, NO IMSI 

When in state MM IDLE and service state NO IMSI the mobile station shall (see section 3.2, TS 23.022 and 
GSM 05.08): 

not start any normal location updating attempt; 

not perform periodic updating; 

not perform IMSI detach if powered down; 

- reject any request from CM entities for MM connections except for emergency calls; 
not respond to paging; 

only perform default cell selection. 
In addition, mobile stations supporting VGCS listening or VBS listening shall: 

- not indicate notifications to the GCC or BCC layer. 

4.2.2.5 Service State, SEARCH FOR PLMN, NORMAL SERVICE 

When in state MM IDLE and service state SEARCH FOR PLMN, NORMAL SERVICE the mobile station shall: 

if timer T321 1 or T3213 expires in this state perform a location updating procedure at the latest if and when back 
to NORMAL SERVICE state and if the cell is not changed; 

if timer T3212 expires in this state perform a periodic location updating procedure at the latest if and when back 
to NORMAL SERVICE state; 

- perform IMSI detach; 
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support requests from the CM layer; 
listen as far as possible to paging, and respond. 
In addition, mobile stations supporting VGCS listening or VBS listening shall: 

listen as far as possible to notifications and indicate notifications to the GCC or BCC layer; 

- respond to notification if the GCC or BCC sublayer requests the reception of a voice group or broadcast call for 
which no channel description has been received in the notification by the RR sublayer; 

- request the RR sublayer to receive a voice group or broadcast call if the GCC or BCC sublayer requests the 
reception of a voice group or broadcast call for which a channel description has been received in the notification 
by the RR sublayer. 

4.2.2.6 Service State, SEARCH FOR PLMN 

When in state MM IDLE and service state SEARCH FOR PLMN the mobile station shall: 
not start any normal location updating attempt; 
not perform periodic updating; 
not perform IMSI detach if powered down; 

- reject any request from CM entities for MM connections except emergency calls; 
not respond to paging. 

4.2.2.7 Service State, RECEIVING GROUP CALL (NORMAL SERVICE) 

Only applicable for mobile stations supporting VGCS listening or VBS listening: 

When in state MM IDLE and service state RECEIVING GROUP CALL (NORMAL SERVICE), the mobile station 
shall: 

- perform normal location updating when a new location area is entered; 

- perform location updating procedure at expiry of timer T321 1 or T3213; 

- perform periodic updating at expiration of timer T3212; 

- perform IMSI detach; 

support requests from the GCC or BCC layers; 

indicate notifications or paging information to the GCC or BCC layer; 

- respond to notification if the GCC or BCC sublayer requests the reception of a voice group or broadcast call for 
which no channel description has been received in the notification by the RR sublayer; 

- request the RR sublayer to receive another voice group or broadcast call if the GCC or BCC sublayer requests 
the reception of a voice group or broadcast call for which a channel description has been received in the 
notification by the RR sublayer. 

4.2.2.8 Service State, RECEIVING GROUP CALL (LIMITED SERVICE) 

Only applicable for mobile stations supporting VGCS listening or VBS listening: 

When in state MM IDLE and service state RECEIVING GROUP CALL (LIMITED SERVICE), the mobile station 
shall: 

not perform periodic updating; 

not perform IMSI detach; 

- reject any requests from CM entities for MM connections except for emergency calls; 
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- perform normal location updating when a cell is entered which may provide normal service (e.g. location area 
not in one of the forbidden LAI lists.); 

it may respond to paging (with IMSI); 

indicate notifications to the GCC or BCC sublayer for which a channel description has been received in the 
notification by the RR sublayer; 

- reject requests of the GCC or BCC sublayer to respond to notifications for which no channel description has 
been received in the notification by the RR sublayer; 

- request the RR sublayer to receive a voice group or broadcast call if the GCC or BCC sublayer requests the 
reception of a voice group or broadcast call for which a channel description has been received in the notification 
by the RR sublayer and then go to the service state RECEIVING GROUP CALL (LIMITED SERVICE). 

4.2.3 Service state when back to state MM IDLE from another state 

When returning to MM IDLE, e.g., after a location updating procedure, the mobile station selects the cell as specified in 
TS 23.022. With one exception, this is a normal cell selection. 

If this return to idle state is not subsequent to a location updating procedure terminated with reception of cause 
"Roaming not allowed in this location area" the service state depends on the result of the cell selection procedure, on the 
update status of the mobile station, on the location data stored in the mobile station and on the presence of the SIM: 

if no cell has been found, the state is NO CELL AVAILABLE, until a cell is found; 

if no SIM is present, or if the inserted SIM is considered invalid by the MS, the state is NO IMSI; 

if the selected cell is in the location area where the MS is registered, then the state is NORMAL SERVICE; it 
shall be noted that this also includes an abnormal case described in paragraph 4.4.4.9; 

(Only applicable for mobile stations supporting VGCS listening or VBS listening.) if the mobile stations was in 
the service state RECEIVING GROUP CALL (NORMAL SERVICE) or RECEIVING GROUP CALL 
(LIMITED SERVICE) before the location updating procedure and the selected cell is in the location area where 
the mobile station is registered, then the state is RECEIVING GROUP CALL (NORMAL SERVICE); 

if the selected cell is in a location area where the mobile station is not registered but in which the MS is allowed 
to attempt a location update, then the state is LOCATION UPDATE NEEDED; 

if the selected cell is in a location area where the mobile station is not allowed to attempt a location update, then 
the state is LIMITED SERVICE; 

(Only applicable for MSs supporting VGCS listening or VBS listening.) if the MSs was in the service state 
RECEIVING GROUP CALL (NORMAL SERVICE) or RECEIVING GROUP CALL (LIMITED SERVICE) 
before the location updating procedure and the selected cell is in the location area where the MS is not allowed 
to attempt a location update, then the state is RECEIVING GROUP CALL (LIMITED SERVICE); 

after some abnormal cases occurring during an unsuccessful location updating procedure, as described in 
paragraph 4.4.4.9, the state is ATTEMPTING TO UPDATE. 

In case of a return from a location updating procedure to which was answered "Roaming not allowed in this location 
area", the service state PLMN SEARCH is entered as specified in section 4.2. L2. 

4.2.4 Behaviour in state GMM-DEREGISTERED 

The state GMM-DEREGISTERED is entered when: 
the MS is switched on; 

the GPRS capability has been enabled in the MS; 

a GPRS detach or combined GPRS detach procedure has been performed; or 
a GMM procedure has failed (except routing area updating, see 4.7.5). 



£75/ 



(3G TS 24.008 version 3.2.1 Release 1 999) 51 ETSI TS 1 24 008 V3.2.1 (2000-01 ) 

The selection of the appropriate substate of GMM-DEREGISTERED after switching on is described in section 4.2.4. 1 . 
The specific behaviour of the MS in state GMM-DEREGISTERED is described in section 4.2.4.2. The substate chosen 
when the GMM-DEREGISTERED state is returned to from another state except state GMM-NULL is described in 
section 4.2.4.3. 

It should be noted that transitions between the various substates of GMM-DEREGISTERED are caused by (e.g.): 

insertion or removal of the SIM; 

cell selection/reselection (see also TS 23.022 [14]); 

- PLMN search; 

loss/regain of coverage; or 

change of RA. 

How various GMM procedures affect the GMM-DEREGISTERED substates and the GPRS update status is described 
in the detailed description of the GMM procedures in section 4.7. 

4.2.4.1 Primary substate selection 

4.2.4.1 .1 Selection of the substate after power on or enabling the MS's GPRS capability 

When the MS is switched on, the substate shall be PLMN-SEARCH in case the SIM is inserted and valid. See 
TS 23.022 [14] and 05.08 [34] for further details. 

When the GPRS capability in an activated MS has been enabled, the selection of the GMM-DEREGISTERED substate 
depends on the MM state and the GPRS update status. 

The substate chosen after PLMN-SEARCH, in case of power on or after enabling of the GPRS capability is: 

- if the cell is not supporting GPRS, the substate shall be NO-CELL-AVAILABLE; 

- if no SIM is present the substate shall be NO-IMSI; 

if a cell supporting GPRS has been found and the PLMN or LA is not in the forbidden list, then the substate shall 
be NORMAL-SERVICE; 

if the selected cell supporting GPRS is in a forbidden PLMN or a forbidden LA, then the MS shall enter the 
substate LIMITED-SERVICE; 

if the MS is in manual network selection mode and no cell supporting GPRS of the selected PLMN has been 
found, the MS shall enter the substate NO-CELL-AVAILABLE. 

4.2.4.1.2 Other Cases 

When the MM state is IDLE, the GMM substate PLMN-SEARCH shall also be entered in the following cases: 

- when a SIM is inserted in substate NO-IMSI; 

- when the user has asked for a PLMN selection in any substate except NO IMSI and NO CELL AVAILABLE ; 

- when coverage is lost in any substate except NO IMSI and NO CELL AVAILABLE ; 

Roaming is denied; 

optionally, when the MS is in automatic network selection mode and the maximum allowed number of 
subsequently unsuccessful attach attempts controlled by the GPRS attach attempt counter (section 4.7.3) have 
been performed. 

optionally, when the MS is in automatic network selection mode and the maximum allowed number of 
subsequently unsuccessful routing area update attempts controlled by the GPRS routing area update attempt 
counter (section 4.7.5) have been performed. 
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4.2.4.2 Detailed description of the MS behaviour in state GMM-DEREGISTERED 

In state GMM-DEREGISTERED, the MS shall behave according to the substate. In the following sections, the 
behaviour is described for the non transient substates. 

4.2.4.2.1 Substate, NORMAL-SERVICE 
The MS shall: 

- perform GPRS attach. 

4.2.4.2.2 Substate, ATTEMPTING-TO-ATTACH 
The MS shall: 

- perform GPRS attach on the expiry of timers T33 1 1 or T3302; 

- perform GPRS attach when the routing area of the serving cell has changed and the location area this cell is 
belonging to is not in the list of forbidden LAs; 

- if entry into this state was caused by b) or d) with cause "Retry upon entry into a new cell"," of section 4.7.3. 1 .5 
, GPRS attach shall be performed when a new cell is entered; and 

if entry into this state was caused by c) or d) with cause different from "Retry upon entry into a new cell" of 
section 4.7.3.1.5, GPRS attach shall not be performed when a new cell is entered. 

use requests from CM layers to trigger the combined GPRS attach procedure, if the network operates in network 
operation mode I. Depending on which of the timers T33 1 1 or T3302 is running the MS shall stop the relevant 
timer and act as if the stopped timer has expired. 

4.2.4.2.3 Substate, LIMITED-SERVICE 

The MS shall: 

- perform GPRS attach when a cell is entered which may provide normal service (e.g. location area is not in one of 
the forbidden lists); 

4.2.4.2.4 Substate, NO-IMSI 
The MS shall: 

only perform default cell selection; 

4.2.4.2.5 Substate, NO-CELL 
The MS shall: 

- perform cell selection according to TS 23.022 [14] and shall choose an appropriate substate. 

4.2.4.2.6 Substate, PLMN-SEARCH 

No specific action is required in this substate. 

4.2.4.2.7 Substate, ATTACH-NEEDED 

The MS shall start a GPRS attach procedure if still needed as soon as the access class allows network contact in the 
selected cell. 

4.2.4.2.8 Substate, SUSPENDED (GSM only) 

The MS : 

shall not send any user data ; and 
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shall not send any signalling information. 

4.2.4.3 Substate when back to state GMM-DEREGISTERED from another GMM 

state 

When returning to state GMM-DEREGISTERED, the MS shall select a cell as specified in TS 23.022 [14]. 

The substate depends on the result of the cell selection procedure, the outcome of the previously performed GMM 
specific procedures , on the GPRS update status of the MS, on the location area data stored in the MS and on the 
presence of the SIM: 

if no cell has been found, the substate is NO-CELL- AVAILABLE, until a cell is found; 

if no SIM is present or if the inserted SIM is considered invalid by the MS, the substate shall be NO-IMSI; 

if the selected cell is in a location area where the MS is allowed to roam, the substate shall be NORMAL- 
SERVICE; 

if a GPRS attach shall be performed (e.g. network requested reattach), the substate shall be ATTEMPTING-TO- 
ATTACH 

- if a PLMN reselection (according to TS 23.022 [14] ) is needed , the substate shall be PLMN SEARCH 

if the selected cell is in a location area where the MS is not allowed to roam, the state shall be LIMITED- 
SERVICE. 

4.2.5 Behaviour in state GMM-REGISTERED 

The state GMM-REGISTERED is entered when: 

- a GMM context is established, i.e. the MS is IMSI attached for GPRS services only or for GPRS and non-GPRS 

services. 

The specific behaviour of the MS in state GMM-REGISTERED is described in section 4.2.5. L The primary substate 
when entering the state GMM-REGISTERED is always NORMAL-SERVICE. 

It should be noted that transitions between the various substates of GMM-REGISTERED are caused by (e.g.): 

cell selection/reselection (see also TS 23.022); 

change of RA; 

loss/regain of coverage. 

How various GMM procedures affect the GMM-REGISTERED substates is described in the detailed description of the 
procedures in section 4.7. 

4.2.5.1 Detailed description of the MS behaviour in state GMM-REGISTERED 

In state GMM-REGISTERED, the MS shall behave according to the substate as explained below. 

4.2.5.1.1 Substate, NORMAL-SERVICE 

The MS shall: 

- perform cell selection/reselection according to TS 23.022 [14]; 

- perform normal and periodic routing area updating; and 

- receive and transmit user data and signalling information. 

GPRS MSs in operation modes C or A shall answer to paging requests. 
GPRS MS in operation mode B may answer to paging requests. 
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4.2.5.1 .2 Substate, SUSPENDED (GSM only) 
The MS: 

shall not send any user data ; 

shall not send any signalling information; and 

shall not perform cell-updates.. 

4.2.5.1.3 Substate, UPDATE-NEEDED 
The MS shall: 

not send any user data; 

not send any signalling information; 

- perform cell selection/reselection according to TS 23.022 [14]; and 

chose the appropriate new substate depending on the GPRS update status as soon as the access class allows 
network contact in the selected cell. 

4.2.5.1.4 Substate, ATTEMPTING-TO-UPDATE 
The MS: 

should not send any user data ; 

shall perform routing area update on the expiry of timers T33 11 or T3302; 

shall perform routing area update when the routing area of the serving cell has changed and the location area this 
cell is belonging to is not in the list of forbidden LAs; 

shall if entry into this state was caused by b) or d) with cause "Retry upon entry into a new cell", of section 
4.7.5.1.5, perform routing area updating when a new cell is entered; and 

shall if entry into this state was caused by c) or d) with cause different from "Retry upon entry into a new cell" of 
section 4.7.5.1.5, not perform routing area updating when a new cell is entered. 

shall use request from CM layers to trigger the combined routing area update procedure, if the network operates 
in network operation mode I. Depending on which of the timers T33 1 1 or T3302 is running the MS shall stop the 
relevant timer and act as if the stopped timer has expired 



4.2.5.1.5 Substate, NO-CELL-AVAILABLE 

The MS shall perform cell selection/reselection according to TS 23.022 [14]. 

4.2.5.1.6 Substate, LIMITED-SERVICE 

The MS shall perform cell selection/reselection according to TS 23.022 [14]; 

4.2.5.1.7 Substate, ATTEMPTING-TO-UPDATE-MM 
The MS shall: 

- perform cell selection/reselection according to TS 23.022 [14]; 

- receive and transmit user data and signalling information. 

- perform routing area update indicating "combined RA/LA updating with IMSI attach" on the expiry of timers 
T3311orT3302; 



£75/ 



(3G TS 24.008 version 3.2.1 Release 1 999) 55 ETSI TS 1 24 008 V3.2.1 (2000-01 ) 

- perform routing area update indicating "combined RA/LA updating with IMSI attach" when the routing area of 
the serving cell has changed and the location area this cell is belonging to is not in the list of forbidden LAs; 

GPRS MSs in operation modes C or A shall answer to paging requests. 

GPRS MS in operation mode B may answer to paging requests. 



4.3 MM common procedures 



As described in section 4.1.1, a MM common procedure can be initiated at any time whilst a RR connection exists 
between the network and the mobile station. 



4.3.1 TMSI reallocation procedure 



The purpose of the TMSI reallocation procedure is to provide identity confidentiality , i.e. to protect a user against 
being identified and located by an intruder (see GSM 02.09, 03.20 and TS 33.102). 

If the identity confidentiality service is applied for an IMSI, a Temporary Mobile Subscriber Identity (TMSI) is used for 
identification within the radio interface signalling procedures. 

The structure of the TMSI is specified in TS 23.003. The TMSI has significance only within a location area. Outside the 
location area it has to be combined with the Location Area Identifier (LAI) to provide for an unambiguous identity. 

Usually the TMSI reallocation is performed at least at each change of a location area. (Such choices are left to the 
network operator). 

The reallocation of a TMSI can be performed either by a unique procedure defined in this section or implicitly by a 
location updating procedure using the TMSI. The implicit reallocation of a TMSI is described together with that 
procedure. 

If a TMSI provided by a mobile station is unknown in the network e.g. due to a data base failure, the network may 
require the mobile station to provide its International Mobile Subscriber Identity (IMSI). In this case the identification 
procedure (see section 4.3.3) should be used before the TMSI reallocation procedure may be initiated. 

The TMSI reallocation can be initiated by the network at any time whilst a RR connection exists between the network 
and the mobile station. 

NOTE 1: Usually the TMSI reallocation is performed in ciphered mode. 

NOTE 2: Normally the TMSI reallocation will take place in conjunction with another procedure, e.g. at location 
updating or at call setup (see TS 29.002). 

4.3.1 .1 TMSI reallocation initiation by the network 

The network initiates the TMSI reallocation procedure by sending a TMSI REALLOCATION COMMAND message to 
the mobile station and starts the timer T3250. 

The TMSI REALLOCATION COMMAND message contains a new combination of TMSI and LAI allocated by the 
network or a LAI and the IMSI if the used TMSI shall be deleted. Usually the TMSI-REALLOCATION COMMAND 
message is sent to the mobile station using a RR connection in ciphered mode (see GSM 03.20 and TS 33.102). 

4.3.1 .2 TMSI reallocation completion by the mobile station 

Upon receipt of the TMSI REALLOCATION COMMAND message the mobile station stores the Location Area 
Identifier (LAI) in the SIM. If the received identity is the IMSI of the relevant mobile station, the mobile station deletes 
any TMSI. If the received identity is a TMSI the mobile station stores the TMSI in the SIM. In both cases the mobile 
station sends a TMSI REALLOCATION COMPLETE message to the network. 

4.3.1 .3 TMSI reallocation completion in the network. 

Upon receipt of the TMSI REALLOCATION COMPLETE message, the network stops the timer T3250 and either 
considers the new TMSI as valid or, if an IMSI was sent to the mobile station, considers the old TMSI as deleted. 
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If the RR connection is no more needed, then the network will request the RR sublayer to release it (see GSM 04.18 
section 3.5 and TS 25.331 section 8.2.2). 

4.3.1.4 Abnormal cases 

Mobile station side: 

The mobile station shall consider the new TMSI and new LAI, if any, as valid and the old TMSI and old LAI as 
deleted as soon as a TMSI REALLOCATION COMMAND or another message containing a new TMSI (e.g. 
LOCATION UPDATING ACCEPT) is correctly received. Any RR connection failure at a later stage shall not 
have any impact on the TMSI and LAI storage. 

Network side: 

(a) RR connection failure: 

If the RR connection is lost before the TMSI REALLOCATION COMPLETE message is received, all MM 
connections (if any) shall be released and both the old and the new TMSIs should be considered as occupied 
for a certain recovery time. 

During this period the network may: 

use the IMSI for paging in the case of network originated transactions on the CM layer. Upon response 
from the mobile station the TMSI reallocation is restarted; 

consider the new TMSI as valid if it is used by the mobile station in mobile originated requests for RR 
connection; 

- use the Identification procedure followed by a new TMSI reallocation if the mobile station uses the old 
TMSI. 

Other implementations are possible. 

(b) Expiry of timer T3250: 

The TMSI reallocation is supervised by the timer T3250 in the network. At the first expiry of timer T3250 
the network may release the RR connection. In this case, the network shall abort the reallocation procedure 
release all MM connections if any, and follow the rules described for RR connection failure above. 

mobile station network 

TMSI REAL CMD 
< Start T3250 

TMSI REAL COM 
> Stop T3250 

Figure 4.1/TS 24.008: TMSI reallocation sequence 

4.3.2 Authentication procedure 

4.3.2a Authentication procedure used for a UMTS authentication challenge 

The purpose of the authentication procedure is fourfold: 

First to permit the network to check whether the identity provided by the mobile station is acceptable or not (see 
GSM 03.20); 

Second to provide parameters enabling the mobile station to calculate a new ciphering key. 

Third to provide parameters enabling the mobile station to calculate a new integrity key. 

Fourth to permit the receiving entity to check the integrity of the network. 

The cases where the authentication procedure should be used are defined in GSM 02.09. 
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The authentication procedure is always initiated and controlled by the network. However, in the case of a UMTS 
authentication challenge, there is the possibility for the MS to reject the network. 

4.3.2b Authentication Procedure used for a GSM autinentication cinallenge 

The purpose of the authentication procedure is twofold: 

First to permit the network to check whether the identity provided by the mobile station is acceptable or not (see 
GSM 03.20); 

Second to provide parameters enabling the mobile station to calculate a new ciphering key. 

The cases where the authentication procedure should be used are defined in GSM 02.09. 

The authentication procedure is always initiated and controlled by the network. 

4.3.2.1 Authentication request by the network 

The network initiates the authentication procedure by transferring an AUTHENTICATION REQUEST message across 
the radio interface and starts the timer T3260. The AUTHENTICATION REQUEST message contains the parameters 
necessary to calculate the response parameters (see GSM 03.20 (GSM) and TS 33.102 (UMTS)). It also contains the 
ciphering key(s) sequence number allocated to the key which may be computed from the given parameters. 

4.3.2.2 Authentication response by the mobile station 

The mobile station shall be ready to respond upon an AUTHENTICATION REQUEST message at any time whilst a 
RR connection exists. It shall process the challenge information and send back an AUTHENTICATION RESPONSE 
message to the network. The new ciphering key (GSM authentication challenge) or the new ciphering key and the new 
integrity key (UMTS authentication challenge) calculated from the challenge information shall overwrite the previous 
one(s) and be stored on the SIM before the AUTHENTICATION RESPONSE message is transmitted. The ciphering 
key(s) stored in the SIM shall be loaded in to the ME when any valid SECURITY MODE COMMAND is received 
during an RR connection (the definition of a valid SECURITY MODE COMMAND message is given in GSM 04.18 
section 3.4.7.2 (GSM) or in TS 25.331 (UMTS)). The ciphering key sequence number shall be stored together with the 
calculated key(s). 

The SIM will provide the mobile station with the authentication response, based upon the authentication challenge from 
the network. For example, a UMTS authentication challenge will result in the SIM passing a RES, a Ciphering Key and 
an Integrity Key to the mobile station. A GSM authentication challenge will result in the SIM passing a SRES and a 
Ciphering Key to the mobile station. 

4.3.2.3 Authentication processing in the network 

Upon receipt of the AUTHENTICATION RESPONSE message, the network stops the timer T3260 and checks the 
vahdity of the response (see GSM 03.20). 

4.3.2.4 Ciphering key sequence number 

The security parameters for authentication and ciphering are tied together in sets. In a GSM authentication challenge, 
from a challenge parameter RAND both the authentication response parameter and the ciphering key can be computed 
given the secret key associated to the IMSI. In a UMTS authentication challenge, from a challenge parameter RAND, 
the authentication response parameter and the ciphering key and the integrity key can be computed given the secret key 
associated to the IMSI. 

In order to allow start of ciphering on a RR connection without authentication, the ciphering key sequence numbers are 
introduced. The sequence number is managed by the network in the way that the AUTHENTICATION REQUEST 
message contains the sequence number allocated to the key(s) which may be computed from the RAND parameter 
carried in that message. 

The mobile station stores this number with the key(s), and indicates to the network in the first message (LOCATION 
UPDATING REQUEST, CM SERVICE REQUEST, PAGING RESPONSE, CM RE-ESTABLISHMENT REQUEST) 
which sequence number the stored key or set of keys has. When the deletion of the sequence number is described this 
also means that the associated key(s) shall be considered as invalid. 
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The network may choose to start ciphering with the stored key(s) (under the restrictions given in GSM 02.09) if the 
stored sequence number and the one given from the mobile station are equal. 

4.3.2.5 Authentication not accepted by the network 

If authentication fails, i.e. if the response is not valid, the network may distinguish between the two different ways of 
identification used by the mobile station: 

- the TMSI was used; 

- the IMSI was used. 

If the TMSI has been used, the network may decide to initiate the identification procedure. If the IMSI given by the 
mobile station then differs from the one the network had associated with the TMSI, the authentication should be 
restarted with the correct parameters. If the IMSI provided by the MS is the expected one (i.e. authentication has really 
failed), the network should proceed as described below. 

If the IMSI has been used, or the network decides not to try the identification procedure, an AUTHENTICATION 
REJECT message should be transferred to the mobile station. 

After having sent this message, all MM connections in progress (if any) are released and the network should initiate the 
RR connection release procedure described in section 3. 5. of 04.18 (GSM) or in TS 25.331 (UMTS). 

Upon receipt of an AUTHENTICATION REJECT message, the mobile station shall set the update status in the SIM to 
U2 ROAMING NOT ALLOWED, delete from the SIM the stored TMSI, LAI and ciphering key sequence number. The 
SIM shall be considered as invalid until switching off or the SIM is removed. 

If the AUTHENTICATION REJECT message is received in the state IMSI DETACH INITIATED the mobile station 
shall follow section 4.3.4.3 of 04.18 (GSM) or in TS 25.331 (UMTS). 

If the AUTHENTICATION REJECT message is received in any other state the mobile station shall abort any MM 
specific, MM connection establishment or call re-establishment procedure, stop any of the timers T3210 or T3230 (if 
running), release all MM connections (if any), start timer T3240 and enter the state WAIT FOR NETWORK 
COMMAND, expecting the release of the RR connection. If the RR connection is not released within a given time 
controlled by the timer T3240, the mobile station shall abort the RR connection. In both cases, either after a RR 
connection release triggered from the network side or after a RR connection abort requested by the MS -side, the MS 
enters state MM IDLE, substate NO IMSI. If the MS has a separate ongoing RR connection to a different core network 
node, it shall consider this separate connection as still being good. 

4.3.2.5.1 Authentication not accepted by the MS 

In a UMTS authentication challenge, the authentication procedure is extended to allow the MS to check the authenticity 
of the core network. Thus allowing, for instance, detection of false base station. 

A R99 GSM-only MS connected to a R99 core network (even using the BSS radio access) shall support a UMTS 
authentication challenge. 

Following a UMTS authentication challenge, the MS may reject the core network, on the grounds of an incorrect 
AUTN parameter (see TS 33.102). This parameter contains two possible causes for authentication failure: 

a) MAC code failure 

If the MS considers the MAC code (supplied by the core network in the AUTN parameter) to be invalid, it 
shall send a CS AUTHENTICATION FAILURE message (9.2.3a) to the network, with the failure cause 'CS 
MAC failure' (see 33.102). Thereafter the procedural behaviour is ffs. 

b) SQN failure 

If the MS considers the SQN (supplied by the core network in the AUTN parameter) to be out of range, it 
shall send a CS AUTHENTICATION FAILURE message (9.2.3a) to the network, with the failure cause 'CS 
Synch failure' and parameters provided by the SIM (see 33.102) Upon receipt of this message, the core 
network may renegotiate with the HLR/AuC and provide the MS with new authentication parameters. 

NOTE: Actions might vary according to the presence/absence of an integrity protected connection to a different 
core network node. 
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4.3.2.6 Abnormal cases 

(a) RR connection failure: 

Upon detection of a RR connection failure before the AUTHENTICATION RESPONSE is received, the 
network shall release all MM connections (if any) and abort any ongoing MM specific procedure. 

(b) Expiry of timer T3260: 

The authentication procedure is supervised on the network side by the timer T3260. At expiry of this timer the 
network may release the RR connection. In this case the network shall abort the authentication procedure and 
any ongoing MM specific procedure, release all MM connections if any, and initiate the RR connection release 
procedure described in section 3.5. 



mobile station network 

AUT REQ 
< Start T3260 



AUT RES 



(a) 

AUT RE J 



Stop T3260 



(b) 
Figure 4.2/TS 24.008: Authentication sequence: (a) authentication; (b) authentication rejection. 

4.3.3 Identification procedure 

The identification procedure is used by the network to request a mobile station to provide specific identification 
parameters to the network e.g. International Mobile Subscriber Identity, International Mobile Equipment Identity (cf. 
TS 23.003). For the presentation of the IMEI, the requirements of GSM 02.09 apply. 

4.3.3.1 Identity request by the network 

The network initiates the identification procedure by transferring an IDENTITY REQUEST message to the mobile 
station and starts the timer T3270. The IDENTITY REQUEST message specifies the requested identification 
parameters in the identity type information element. 

4.3.3.2 Identification response by the mobile station 

The mobile station shall be ready to respond to an IDENTITY REQUEST message at any time whilst a RR connection 

exists. 

Upon receipt of the IDENTITY REQUEST message the mobile station sends back an IDENTITY RESPONSE 
message. The IDENTITY RESPONSE message contains the identification parameters as requested by the network. 

Upon receipt of the IDENTITY RESPONSE the network shall stop timer T3270. 

4.3.3.3 Abnormal cases 

(a) RR connection failure: 

Upon detection of a RR connection failure before the IDENTITY RESPONSE is received, the network shall 
release all MM connections (if any) and abort any ongoing MM specific procedure. 

(b) Expiry of timer T3270: 

The identification procedure is supervised by the network by the timer T3270. At expiry of the timer T3270 the 
network may release the RR connection. In this case, the network shall abort the identification procedure and any 
ongoing MM specific procedure, release all MM connections if any, and initiate the RR connection release 
procedure as described in GSM 04.18 section 3.5 and 25.331 section 8.2.1. 
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mobile station network 

ID REQ 
< Start T3270 

ID RES 
> stop T3270 

Figure 4.3/TS 24.008: Identification sequence 

4.3.4 IMSI detach procedure 

The IMSI detach procedure may be invoked by a mobile station if the mobile station is deactivated or if the Subscriber 
Identity Module (see GSM 02.17 and 31.102) is detached from the mobile station. 

In GSM, a flag (ATT) broadcast in the L3-RR SYSTEM INFORMATION TYPE 3 message on the BCCH is used by 
the network to indicate whether the detach procedure is required. The value of the ATT flag to be taken into account 
shall be the one broadcast when the mobile station was in MM idle. 

In UMTS, a flag (ATT) broadcast in the L3-RRC SYSTEM INFORMATION BLOCK 1 message on the BCCH is used 
by the network to indicate whether the detach procedure is required. The value of the ATT flag to be taken into account 
shall be the one broadcast when the mobile station was in MM idle. 

The procedure causes the mobile station to be indicated as inactive in the network. 

4.3.4.1 IMSI detach initiation by the mobile station 

The IMSI detach procedure consists only of the IMSI DETACH INDICATION message sent from the mobile station to 
the network. The mobile station then starts timer T3220 and enters the MM sublayer state IMSI DETACH INITIATED. 

If no RR connection exists, the MM sublayer within the mobile station will request the RR sublayer to establish a RR 
connection. If establishment of the RR connection is not possible because a suitable cell is not (or not yet) available 
then, the mobile station shall try for a period of at least 5 seconds and for not more than a period of 20 seconds to find a 
suitable cell. If a suitable cell is found during this time then, the mobile station shall request the RR sublayer to establish 
an RR connection, otherwise the IMSI detach is aborted. 

If a RR connection exists, the MM sublayer will release locally any ongoing MM connections before the IMSI 
DETACH INDICATION message is sent. 

The IMSI detach procedure may not be started if a MM specific procedure is active. If possible, the IMSI detach 
procedure is then delayed until the MM specific procedure is finished, else the IMSI detach is omitted. 

4.3.4.2 IMSI detach procedure in the network 

When receiving an IMSI DETACH INDICATION message, the network may set an inactive indication for the IMSI. 
No response is returned to the mobile station. After reception of the IMSI DETACH INDICATION message the 
network shall release locally any ongoing MM connections, and start the normal RR connection release procedure (see 
GSM 04.18 section 3.5 and 25.331 section 8.2.1). 

Only applicable for a network supporting VGCS: If an IMSI DETACH INDICATION message is received from the 
talking mobile station in a group call while the network is in service state MM CONNECTION ACTIVE (GROUP 
TRANSMIT MODE), the network shall release locally the ongoing MM connection and then go to the service state 
GROUP CALL ACTIVE. 

4.3.4.3 IMSI detach completion by the mobile station 

Timer T3220 is stopped when the RR connection is released. The mobile station should, if possible, delay the local 
release of the channel to allow a normal release from the network side until T3220 timeout. If this is not possible (e.g. 
detach at power down) the RR sublayer on the mobile station side should be aborted. 

4.3.4.4 Abnormal cases 

If the establishment of an RR connection is unsuccessful, or the RR connection is lost, the IMSI detach is aborted by the 
mobile station. 
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mobile station network 

IMSI DET IND 

> 

Figure 4.4/TS 24.008: IMSI detach sequence 

4.3.5 Abort procedure 

The abort procedure may be invoked by the network to abort any on-going MM connection establishment or already 
established MM connection. The mobile station shall treat ABORT message as compatible with current protocol state 
only if it is received when at least one MM connection exists or an MM connection is being established. 

4.3.5.1 Abort procedure initiation by the network 

The abort procedure consists only of the ABORT message sent from the network to the mobile station. Before the 
sending of the ABORT message the network shall locally release any ongoing MM connection. After the sending the 
network may start the normal RR connection release procedure. 

The Cause information element indicates the reason for the abortion. The following cause values may apply: 

# 6: Illegal ME 

#17: Network failure 

4.3.5.2 Abort procedure in the mobile station 

At the receipt of the ABORT message the mobile station shall abort any MM connection establishment or call re- 
establishment procedure and release all MM connections (if any). If cause value #6 is received the mobile station shall 
delete any TMSI, LAI and ciphering key sequence number stored in the SIM, set the update status to ROAMING NOT 
ALLOWED (and store it in the SIM according to section 4.1.2.2) and consider the SIM invalid until switch off or the 
SIM is removed. As a consequence the mobile station enters state MM IDLE, substate NO IMSI after the release of the 
RR connection. 

The mobile station shall then wait for the network to release the RR connection - see section 4.5.3. L 

4.3.6 MM information procedure 

The MM information message support is optional in the network. 

The MM information procedure may be invoked by the network at any time during an RR connection. 

4.3.6.1 MM information procedure initiation by the network 

The MM information procedure consists only of the MM INFORMATION message sent from the network to the 
mobile station. During an RR connection, the network shall send none, one, or more MM INFORMATION messages to 
the mobile station. If more than one MM INFORMATION message is sent, the messages need not have the same 
content. 

NOTE: The network may be able to select particular instants where it can send the MM INFORMATION 

message without adding delay to, or interrupting, any CM layer transaction, e.g. immediately after the 
AUTHENTICATION REQUEST message. 

4.3.6.2 MM information procedure in the mobile station 

When the mobile station (supporting the MM information message) receives an MM INFORMATION message, it shall 
accept the message and optionally use the contents to update appropriate information stored within the mobile station. 

If the mobile station does not support the MM information message the mobile station shall ignore the contents of the 
message and return an MM STATUS message with cause #97. 



£75/ 



(3G TS 24.008 version 3.2.1 Release 1 999) 62 ETSI TS 1 24 008 V3.2.1 (2000-01 ) 



4.4 MM specific procedures 



A MM specific procedure can only be started if no other MM specific procedure is running or no MM connection exists 
between the network and the mobile station. The end of the running MM specific procedure or the release of all MM 
connections have to be awaited before a new MM specific procedure can be started. 

During the lifetime of a MM specific procedure, if a MM connection establishment is requested by a CM entity, this 
request will either be rejected or be delayed until the running MM specific procedure is terminated (this depends on the 
implementation) . 

Any MM common procedure (except IMSI detach) may be initiated during a MM specific procedure. 

Unless it has specific permission from the network (follow-on proceed) the mobile station side should await the release 
of the RR connection used for a MM specific procedure before a new MM specific procedure or MM connection 
establishment is started. 

NOTE: The network side may use the same RR connection for MM connection management. 

4.4.1 Location updating procedure 

The location updating procedure is a general procedure which is used for the following purposes: 
normal location updating (described in this section); 

- periodic updating (see section 4.4.2); 

- IMSI attach (see section 4.4.3). 

The normal location updating procedure is used to update the registration of the actual Location Area of a mobile 
station in the network. The location updating type information element in the LOCATION UPDATING REQUEST 
message shall indicate normal location updating. The conditions under which the normal location updating procedure is 
used by a mobile station in the MM IDLE state are defined for each service state in section 4.2.2. 

Only applicable for mobile stations supporting VGCS listening or VBS listening: A mobile station in RR group receive 
mode is in the MM IDLE state, substate RECEIVING GROUP CALL (NORMAL SERVICE) or RECEIVING GROUP 
CALL (LIMITED SERVICE). To perform a location updating, the MS in RR group receive mode shall leave the group 
receive mode, establish an independent dedicated RR connection to perform the location updating as described above 
and return to the RR group receive mode afterwards. 

The normal location updating procedure shall also be started if the network indicates that the mobile station is unknown 
in the VLR as a response to MM connection establishment request. 

To limit the number of location updating attempts made, where location updating is unsuccessful, an attempt counter is 
used. The attempt counter is reset when a mobile station is switched on or a SIM card is inserted. 

Upon successful location updating the mobile station sets the update status to UPDATED in the SIM, and stores the 
received Location Area Identification in the SIM. The attempt counter shall be reset. 

The detailed handling of the attempt counter is described in 4.4.4.6 to 4.4.4.9. 

The Mobile Equipment shall contain a list of "forbidden location areas for roaming", as well as a list of "forbidden 
location areas for regional provision of service". These lists shall be erased when the MS is switched off or when the 
SIM is removed, and periodically (with period in the range 12 to 24 hours). The location area identification received on 
the BCCH that triggered the location updating request shall be added to the suitable list whenever a location update 
reject message is received with the cause "Roaming not allowed in this location area" or with the cause "Location Area 
not allowed". The lists shall accommodate each 10 or more location area identifications. When the list is full and a new 
entry has to be inserted, the oldest entry shall be deleted. 

The cell selection processes in the different states are described in TS 23.022 and GSM 05.08. 

The location updating procedure is always initiated by the mobile station. 
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4.4.2 Periodic updating 

Periodic updating may be used to notify periodically the availability of the mobile station to the network. Periodic 
updating is performed by using the location updating procedure. The location updating type information element in the 
LOCATION UPDATING REQUEST message shall indicate periodic updating. 

The procedure is controlled by the timer T3212 in the mobile station. If the timer is not already started, the timer is 
started each time the mobile station enters the MM IDLE substate NORMAL SERVICE or ATTEMPTing TO 
UPDATE. When the MS leaves the MM Idle State the timer T3212 shall continue running until explicitly stopped. 

The timer is stopped (shall be set to its initial value for the next start) when: 

- a LOCATION UPDATING ACCEPT or LOCATION UPDATING REJECT message is received; 

- an AUTHENTICATION REJECT message is received; 

the first MM message is received, or security mode setting is completed in the case of MM connection 
establishment, except when the most recent service state is LIMITED SERVICE; 

the mobile station has responded to paging and thereafter has received the first correct layer 3 message except 
RR message; 

the mobile station is deactivated (i.e. equipment powered down or SIM removed). 

When the timer T3212 expires, the location updating procedure is started and the timer shall be set to its initial value for 
the next start. If the mobile station is in other state than MM Idle when the timer expires the location updating 
procedure is delayed until the MM Idle State is entered. 

The conditions under which the periodic location updating procedure is used by a mobile station in the MM IDLE state 
are defined for each service state in section 4.2.2. 

If the mobile station is in service state NO CELL AVAILABLE, LIMITED SERVICE, PLMN SEARCH or PLMN 
SEARCH-NORMAL SERVICE when the timer expires the location updating procedure is delayed until this service 
state is left. 

In GSM, the (periodic) location updating procedure is not started if the BCCH information at the time the procedure is 
triggered indicates that periodic location shall not be used. The timeout value is broadcasted in the L3-RR SYSTEM 
INFORMATION TYPE 3 message on the BCCH, in the Control channel description IE, see GSM 04.18 section 
10.5.2.n. 

In UMTS, the (periodic) location updating procedure is not started if the information on BCCH or in the last received 
dedicated system information at the time the procedure is triggered indicates that periodic location shall not be used. 
The timeout value is broadcasted in the L3-RRC SYSTEM INFORMATION BLOCK 1 message on the BCCH, see TS 

25.331 section 10.1.6.4.3. 

The T3212 timeout value shall not be changed in the NO CELL AVAILABLE, LIMITED SERVICE, PLMN SEARCH 
and PLMN SEARCH-NORMAL SERVICE states. 

When a change of the T3212 timeout value has to be taken into account and the timer is running (at change of the 
serving cell or, change of the broadcast value of T3212), the MS shall behave as follows: 

Let tl be the new T3212 timeout value and let t be the current timer value at the moment of the change to the 
new T3212 timeout value; then the timer shall be restarted with the value t modulo tl. 

When the mobile station is activated, or when a change of the T3212 timeout value has to be taken into account and the 
timer is not running, the mobile station shall behave as follows: 

Let tl be the new T3212 timeout value, the new timer shall be started at a value randomly, uniformly drawn 
between and tl. 



4.4.3 IMSI attacin procedure 



The IMSI attach procedure is the complement of the IMSI detach procedure (see section 4.3.4). It is used to indicate the 
IMSI as active in the network. 
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In GSM, a flag (ATT) is broadcast in the L3-RR SYSTEM INFORMATION TYPE 3 message. It indicates whether the 
attach and detach procedures are required to be used or not. 

In UMTS, a flag (ATT) is broadcast in the L3-RRC SYSTEM INFORMATION BLOCK 1 message. It indicates 
whether the attach and detach procedures are required to be used or not. 

The IMSI attach procedure is invoked if the detach/attach procedures are required by the network and an IMSI is 
activated in a mobile station (i.e. activation of a mobile station with plug-in SIM, insertion of a card in a card-operated 
mobile station etc.) within coverage area from the network or a mobile station with an IMSI activated outside the 
coverage area enters the coverage area. The IMSI attach procedure is used only if the update status is UPDATED and if 
the stored Location Area Identification is the same as the one which is actually broadcasted on the BCCH of the current 
serving cell. Otherwise a normal location updating procedure (see section 4.4.1) is invoked independently of the ATT 
flag indication. 

IMSI attach is performed by using the location updating procedure. The location updating type information element in 
the LOCATION UPDATING REQUEST message shall in this case indicate IMSI attach. 

4.4.4 Generic Location Updating procedure 
4.4.4.1 Location updating initiation by the mobile station 

Any timer used for triggering the location updating procedure (e.g. T3211, T3212) is stopped if running. 

As no RR connection exists at the time when the location updating procedure has to be started, the MM sublayer within 
the mobile station will request the RR sublayer to establish a RR connection and enter state WAIT FOR RR 
CONNECTION (LOCATION UPDATE). The procedure for estabUshing an RR connection is described in GSM 04.18 
section 3.3 and TS 25.331 section 8.2.3. 

The mobile station initiates the location updating procedure by sending a LOCATION UPDATING REQUEST 
message to the network, starts the timer T3210 and enters state LOCATION UPDATING INITIATED. The location 
updating type information element shall indicate what kind of updating is requested. 

4.4.4.1 a Network Request for Additional mobile station Capability Information 

In GSM, the network may initiate the classmark interrogation procedure, for example, to obtain further information on 
the mobile station's encryption capabilities. 

4.4.4.2 Identification request from the network 

The network may initiate the identification procedure, e.g. if the network is unable to get the IMSI based on the TMSI 
and LAI used as identification by the mobile station (see section 4.3.3). 

4.4.4.3 Authentication by the network 

The authentication procedure (see section 4.3.2) may be initiated by the network upon receipt of the LOCATION 
UPDATING REQUEST message from the mobile station. (See the cases defined in GSM 02.09). 

4.4.4.4 Security mode setting by the network 

In GSM, the security mode setting procedure (see GSM 04. 18 section 3.4.7) may be initiated by the network, e.g., if a 
new TMSI has to be allocated. 

In UMTS, the security mode control procedure (see TS 25.331 section 8.1.10) may be initiated by the network, e.g., if a 
new TMSI has to be allocated. 

4.4.4.5 Attempt Counter 

To limit the number of location updating attempts made, where location updating is unsuccessful, an attempt counter is 
used. It counts the number of consecutive unsuccessful location update attempts. 

The attempt counter is incremented when a location update procedure fails. The specific situations is specified in 
section 4.4.4.9. 
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The attempt counter is reset when: 

the mobile station is powered on; 
- a SIM is inserted; 

location update is successfully completed; 

location update completed with cause #11, #12 or #13 (see section 4.4.4.7). 
and in case of service state ATTEMPTING to UPDATE: 

a MS detects that a new location area is entered; 

expiry of timer T3212; 

location update is triggered by CM sublayer requests. 
The attempt counter is used when deciding whether to re-attempt a location update after timeout of timer T321 1. 

4.4.4.6 Location updating accepted by the network 

If the location updating is accepted by the network a LOCATION UPDATING ACCEPT message is transferred to the 
mobile station. 

In case the identity confidentiality service is active (see section 4.3.1 and 4.4.4.4), the TMSI reallocation may be part of 
the location updating procedure. The TMSI allocated is then contained in the LOCATION UPDATING ACCEPT 
message together with the location area identifier LAI. The network shall in this case start the supervision timer T3250 
as described in section 4.3.1. 

If the network wishes to prolong the RR connection to allow the mobile station to initiate MM connection establishment 
(for example if the mobile station has indicated in the LOCATION UPDATING REQUEST that it has a follow-on 
request pending) the network shall send "follow on proceed" in the LOCATION UPDATING ACCEPT and start timer 
T3255. 

The mobile station receiving a LOCATION UPDATING ACCEPT message shall store the received location area 
identification LAI, stop timer T3210, reset the attempt counter and set the update status in the SIM to UPDATED. If the 
message contains an IMSI, the mobile station is not allocated any TMSI, and shall delete any TMSI in the SIM 
accordingly. If the message contains a TMSI, the mobile station is allocated this TMSI, and shall store this TMSI in the 
SIM and a TMSI REALLOCATION COMPLETE shall be returned to the network. If neither IMSI nor TMSI is 
received in the LOCATION UPDATING ACCEPT message, the old TMSI if any available shall be kept. 

If the LAI or PLMN identity contained in the LOCATION UPDATING ACCEPT message is a member of any of the 
"forbidden lists" then any such entries shall be deleted. 

After that, the mobile station shall act according to the presence of the "Follow-on proceed" information element in the 
LOCATION UPDATING ACCEPT; if this element is present and the mobile station has a CM application request 
pending, it shall send a CM SERVICE REQUEST to the network and proceed as in section 4.5.1.1. Otherwise, it shall 
start timer T3240 and enter state WAIT FOR NETWORK COMMAND. 

Furthermore, the network may grant authorisation for the mobile station to use GSM-Cordless Telephony System (CTS) 
in the Location Area and its immediate neighbourhood. The mobile should memorise this permission in non-volatile 
memory. If the "CTS permission" IE is not present in the message, the mobile is not authorised to use GSM-CTS, and 
shall accordingly delete any memorised permission. 

NOTE: the interaction between CTS and GPRS procedures are not yet defined. 

4.4.4.7 Location updating not accepted by the network 

If the location updating cannot be accepted the network sends a LOCATION UPDATING REJECT message to the 
mobile station. The mobile station receiving a LOCATION UPDATING REJECT message shall stop the timer T3210, 
store the reject cause, start T3240, enter state LOCATION UPDATING REJECTED await the release of the RR 
connection triggered by the network. Upon the release of the RR connection the mobile station shall take the following 
actions depending on the stored reject cause: 

# 2: IMSI unknown in HLR; 
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# 3: Illegal MS; or 

# 6: Illegal ME. 

The mobile station shall set the update status to ROAMING NOT ALLOWED (and store it in the SIM according 
to section 4.L2.2), and delete any TMSI, stored LAI and ciphering key sequence number and shall consider the 
SIM as invalid until switch-off or the SIM is removed. 

#11: PLMN not allowed; 

#12: Location Area not allowed; or 

#13: Roaming not allowed in this location area. 

The mobile station shall delete any LAI, TMSI and ciphering key sequence number stored in the SIM, reset the 
attempt counter, set the update status to ROAMING NOT ALLOWED (and store it in the SIM according to 
section 4.1.2.2). The mobile station shall store the LAI or the PLMN identity in the suitable forbidden list, i.e. in 
the "forbidden PLMN list" for cause #1 1, in the list of "forbidden location areas for regional provision of 
service" for cause #12, and in the list of "forbidden location areas for roaming" for cause #13. In addition, the 
MS will memorize if cause #13 was received, so to perform a PLMN selection instead of a cell selection when 
back to the MM IDLE state. 

Other values are considered as abnormal cases and the specification of the mobile station behaviour in those cases is 
given in section 4.4.4.9. 

4.4.4.8 Release of RR connection after location updating 

When the Location updating procedure is finished (see sections 4.4.4.6 and 4.4.4.7) the mobile station shall (except in 
the case where the mobile has a follow-on CM application request pending and has received the follow-on proceed 
indication, see 4.4.4.6) set timer T3240 and enter the state WAIT FOR NETWORK COMMAND, expecting the release 
of the RR connection. The network may decide to keep the RR connection for network initiated establishment of a MM 
connection, or to allow for mobile initiated MM connection establishment. 

Any release of the RR connection shall be initiated by the network according to section 3.5 in GSM 04.18, and section 
8.2.1 in TS 25.331. If the RR connection is not released within a given time controlled by the timer T3240, the mobile 
station shall abort the RR connection. In both cases, either after a RR connection release triggered from the network 
side or after a RR connection abort requested by the MS-side, the MS shall return to state MM IDLE. 

At transition to state MM IDLE, substates NORMAL SERVICE or RECEIVING GROUP CALL (NORMAL 
SERVICE) or ATTEMPTING TO UPDATE either timer T3212 or timer T3211 is started as described in section 
4.4.4.9. 

4.4.4.9 Abnormal cases on the mobile station side 

The different abnormal cases that can be identified are the following: 

a) Access barred because of access class control 

The location updating procedure is not started. The mobile station stays in the current serving cell and applies 
normal cell reselection process. The procedure is started as soon as possible and if still necessary (when the 
barred state is ended or because of a cell change) 

b) The answer to random access is an IMMEDIATE ASSIGNMENT REJECT message 

The location updating is not started. The mobile station stays in the chosen cell and applies normal cell selection 
process. The waiting timer T3122 is reset when a cell change occurs. The procedure is started as soon as possible 
after T3122 timeout if still necessary. 

c) Random access failure 

Timer T3213 is started. When it expires the procedure is attempted again if still necessary. 

NOTE: As specified in GSM 05.08, a cell reselection then takes place, with return to the cell inhibited for 5 
seconds if there is at least one other suitable cell. Typically the selection process will take the mobile 
station back to the cell where the random access failed after 5 seconds. 
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If at the expiry of timer T3213 a new cell has not been selected due to the lack of valid information (see 
GSM 05.08), the mobile station may as an option delay the repeated attempt for up to 8 seconds to allow cell re- 
selection to take place. In this case the procedure is attempted as soon as a new cell has been selected or the 
mobile station has concluded that no other cell can be selected. 

If random access failure occurs for two successive random access attempts for location updating the mobile 
station proceeds as specified below. 

d) RR connection failure 

The procedure is aborted and the mobile station proceeds as specified below. 

e) T32 10 timeout 

The procedure is aborted, the RR connection is aborted and the MS proceeds as specified below. 

f) RR release before the normal end of procedure 

The procedure is aborted and the mobile station proceeds as specified below. 

g) Location updating reject, other causes than those treated in section 4.4.4.7 

The MS waits for release of the RR connection as specified in section 4.4.4.8, and then proceeds as specified 
below. 

In cases d) to g) above and for repeated failures as defined in c) above the mobile station proceeds as follows. Timer 
T3210 is stopped if still running. The RR Connection is aborted in case of timer T3210 timeout. The attempt counter is 
incremented. The next actions depend on the Location Area Identities (stored and received from the BCCH of the 
current serving cell) and the value of the attempt counter. 

- the update status is UPDATED, and the stored LAI is equal to the one received on the BCCH from the current 
serving cell and the attempt counter is smaller than 4: 

The mobile station shall keep the update status to UPDATED, the MM IDLE sub-state after the RR connection 
release is NORMAL SERVICE. The mobile station shall memorize the location updating type used in the 
location updating procedure. It shall start timer T321 1 when the RR connection is released. When timer T321 1 
expires the location updating procedure is triggered again with the memorized location updating type; 

- either the update status is different from UPDATED, or the stored LAI is different from the one received on the 
BCCH from the current serving cell, or the attempt counter is greater or equal to 4: 

The mobile station shall delete any LAI, TMSI, ciphering key sequence number stored in the SIM, set the update 
status to NOT UPDATED and enter the MM IDLE sub-state ATTEMPTING TO UPDATE when the RR 
connection is released (See section 4.2.2.2 for the subsequent actions). If the attempt counter is smaller than 4, 
the mobile station shall memorize that timer T3211 is to be started when the RR connection is released, 
otherwise it shall memorize that timer T3212 is to be started when the RR connection is released. 

4.4.4.1 Abnormal cases on the network side 

a) RR connection failure 

If a RR connection failure occurs during a common procedure integrated with the location updating procedure, 
the behaviour of the network should be according to the description of that common procedure. 

If a RR connection failure occurs when a common procedure does not exist, the location updating procedure towards 
the mobile station should be aborted. 

b) protocol error 

If the LOCATION UPDATING REQUEST message is received with a protocol error, the network should, if 
possible, return a LOCATION UPDATING REJECT message with one of the following Reject causes: 

#96: Mandatory information element error 

#99: Information element non-existent or not implemented 

#100: Conditional IE error 
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#111: Protocol error, unspecified 

Having sent the response, the network should start the channel release procedure (see section 3.5). 

mobile station network 

LOC UPD REQ 

Start T3210 > 

LOC UPD ACC 

Stop T3210 < 

LOC UPD REJ 
" <------------ 

Figure 4.5/TS 24.008: Location updating sequence 

4.5 Connection management sublayer service provision 

The concept of MM connection is introduced in this section. This concept is mainly a descriptive tool: The 
establishment of an MM connection by the network can be local (i.e. it is achieved by the transmission of the first CM 
layer message and without the transmission of any MM layer messages) or can be achieved by the transmission of a CM 
SERVICE PROMPT message (eg. in the case of certain ring back services). The release of an MM connection by the 
network or by the mobile station is always local, i.e. these purposes can be achieved without sending any MM messages 
over the radio interface. (On the contrary, establishment of an MM connection by the mobile station requires the 
sending of MM messages over the radio interface. An exception is VGCS, where an MM connection will be established 
as result of an uplink access procedure (see section 3.7.2. l.lin GSM 04.18).) 

The Mobility Management (MM) sublayer is providing connection management services to the different entities of the 
upper Connection management (CM) sublayer (see TS 24.007). It offers to a CM entity the possibility to use an MM 
connection for the exchange of information with its peer entity. An MM connection is established and released on 
request from a CM entity. Different CM entities communicate with their peer entity using different MM connections. 
Several MM connections may be active at the same time. 

An MM connection requires an RR connection. All simultaneous MM connections for a given mobile station use the 
same RR connection. 

In the following sections, the procedures for establishing, re-establishing, maintaining, and releasing an MM connection 
are described, usually separately for the mobile station and the network side. 

4.5.1 IVIIVI connection establishment 

4.5.1 .1 MM connection establishment initiated by the mobile station 

Upon request of a CM entity to establish an MM connection the MM sublayer first decides whether to accept, delay, or 
reject this request: 

An MM connection establishment may only be initiated by the mobile station when the following conditions are 
fulfilled: 

- Its update status is UPDATED. 

The MM sublayer is in one of the states MM IDLE or MM connection active but not in MM connection 
active (Group call). 

An exception from this general rule exists for emergency calls (see section 4.5.1.5). A further exception is 
defined in the following clause. 

If an MM specific procedure is running at the time the request from the CM sublayer is received, and the 
LOCATION UPDATING REQUEST message has been sent, the request will either be rejected or delayed, 
depending on implementation, until the MM specific procedure is finished and, provided that the network has 
not sent a "follow-on proceed" indication, the RR connection is released. If the LOCATION UPDATING 
REQUEST message has not been sent, the mobile station may include a "follow-on request" indicator in the 
message. The mobile station shall then delay the request until the MM specific procedure is completed, when it 
may be given the opportunity by the network to use the RR connection: see section 4.4.4.6. 
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In order to establish an MM connection, the mobile station proceeds as follows: 

a) If no RR connection exists, the MM sublayer requests the RR sublayer to establish an RR connection and enters 
MM sublayer state WAIT FOR RR CONNECTION (MM CONNECTION). This request contains an 
establishment cause and a CM SERVICE REQUEST or NOTIFICATION RESPONSE message. When the 
establishment of an RR connection is indicated by the RR sublayer (this indication implies that the CM 
SERVICE REQUEST or NOTIFICATION RESPONSE message has been successfully transferred via the radio 
interface, see section 2.2), the MM sublayer of the mobile station starts timer T3230, gives an indication to the 
CM entity that requested the MM connection establishment, and enters MM sublayer state WAIT FOR 
OUTGOING MM CONNECTION. 

b) If an RR connection is available, the MM sublayer of the mobile station sends a CM SERVICE REQUEST or 
NOTIFICATION RESPONSE message to the network, starts timer T3230, gives an indication to the CM entity 
that requested the MM connection establishment, and enters: 

- MM sublayer state WAIT FOR OUTGOING MM CONNECTION, if no MM connection is active; 

- MM sublayer state WAIT FOR ADDITIONAL OUTGOING MM CONNECTION, if at least one MM 
connection is active; 

- If an RR connection exists but the mobile station is in the state WAIT FOR NETWORK COMMAND then 
any requests from the CM layer that are received will either be rejected or delayed until this state is left. 

c) Only applicable for mobile stations supporting VGCS talking: 

If a mobile station which is in the MM sublayer state MM IDLE, service state RECEIVING GROUP CALL 

(NORMAL SERVICE), receives a request from the GCC sublayer to perform an uplink access, the MM sublayer 
requests the RR sublayer to perform an uplink access procedure and enters MM sublayer state WAIT FOR RR 
CONNECTION (GROUP TRANSMIT MODE). 

When a successful uplink access is indicated by the RR sublayer, the MM sublayer of the mobile station gives an 
indication to the GCC sublayer and enters MM sublayer state MM CONNECTION ACTIVE (GROUP 
TRANSMIT MODE). 

When an uplink access reject is indicated by the RR sublayer, the MM sublayer of the mobile station gives an 
indication to the GCC sublayer and enters the MM sublayer state MM IDLE, service state RECEIVING GROUP 
CALL (NORMAL SERVICE). 

In the network, if an uplink access procedure is performed, the RR sublayer in the network provides an 
indication to the MM sublayer together with the mobile subscriber identity received in the TALKER 
INDICATION message. The network shall then enter the MM sublayer state MM CONNECTION ACTIVE 
(GROUP TRANSMIT MODE). 

The CM SERVICE REQUEST message contains the 

mobile identity according to section 10.5.1.4; 

mobile station classmark 2; 

ciphering key sequence number; and 

CM service type identifying the requested type of transaction (e.g. mobile originating call establishment, 
emergency call establishment, short message service, supplementary service activation), location services) 

A MS supporting eMLPP may optionally include a priority level in the CM SERVICE REQUEST message. 

Only applicable for mobile stations supporting VGCS listening or VBS listening: 

The NOTIFICATION RESPONSE message is used if a mobile station has received a notification message on the NCH 
for a VGCS or VBS call without a description of the respective VGCS or VBS channel. The mobile station therefore 
establishes an MM connection with a NOTIFICATION RESPONSE in order to obtain the necessary details from the 
network. The NOTIFICATION RESPONSE message contains the 

mobile identity according to section 10.5.1.4; 

mobile station classmark 2; and 
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notified voice group or broadcast call reference according to section 10.5.1.9. 

A collision may occur when a CM layer message is received by the mobile station in MM sublayer state WAIT FOR 
OUTGOING MM CONNECTION or in WAIT FOR ADDITIONAL OUTGOING MM CONNECTION. In this case 
the MM sublayer in the MS shall establish a new MM connection for the incoming CM message as specified in 4.5. 1.3. 

Upon receiving a CM SERVICE REQUEST or NOTIFICATION RESPONSE message, the network shall analyse its 
content. The type of semantic analysis may depend on other on going MM connection(s). Depending on the type of 
request and the current status of the RR connection, the network may start any of the MM common procedures and RR 
procedures. 

In GSM, the network may initiate the classmark interrogation procedure, for example, to obtain further information on 
the mobile station's encryption capabilities. 

The identification procedure (see section 4.3.3) may be invoked for instance if a TMSI provided by the mobile station is 
not recognized. 

The network may invoke the authentication procedure (see section 4.3.2) depending on the CM service type. 

In GSM, the network decides also if the security mode setting procedure shall be invoked (see section 3.4.7 in GSM 
04.18).. 

In UMTS, the network decides also if the security mode control procedure shall be invoked (see section 8.1.10 in TS 
25.331). 

NOTE: If the CM_SERVICE_REQUEST message contains a priority level the network may use this to perform 
queuing and pre-emption as defined in TS 23.067. 

In GSM, an indication from the RR sublayer that the security mode setting procedure is completed, or reception of a 
CM SERVICE ACCEPT message, shall be treated as a service acceptance indication by the mobile station. 

The MM connection establishment is completed, timer T3230 shall be stopped, the CM entity that requested the MM 
connection shall be informed, and MM sublayer state MM CONNECTION ACTIVE is entered. The MM connection is 
considered to be active. 

If the service request cannot be accepted, the network returns a CM SERVICE REJECT message to the mobile station. 

The reject cause information element (see 10.5.3.6 and Annex G) indicates the reason for rejection. The following cause 
values may apply: 

#4: IMSI unknown in VLR 

#6: Illegal ME 

#17: Network failure 

#22 : Congestion 

#32 : Service option not supported 

#33 : Requested service option not subscribed 

#34 : Service option temporarily out of order 

If no other MM connection is active, the network may start the RR connection release (see section 3.5) when the CM 
SERVICE REJECT message is sent. 

If a CM SERVICE REJECT message is received by the mobile station, timer T3230 shall be stopped, the requesting 
CM sublayer entity informed. Then the mobile station shall proceed as follows: 

If the cause value is not #4 or #6 the MM sublayer returns to the previous state (the state where the request was 
received). Other MM connections shall not be affected by the CM SERVICE REJECT message. 

If cause value #4 is received, the mobile station aborts any MM connection, deletes any TMSI, LAI and 
ciphering key sequence number in the SIM, changes the update status to NOT UPDATED (and stores it in the 
SIM according to section 4.1.2.2), and enters the MM sublayer state WAIT FOR NETWORK COMMAND. If 
subsequently the RR connection is released or aborted, this will force the mobile station to initiate a normal 
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location updating). Whether the CM request shall be memorized during the location updating procedure, is a 
choice of implementation. 

If cause value #6 is received, the mobile station aborts any MM connection, deletes any TMSI, LAI and 
ciphering key sequence number in the SIM, changes the update status to ROAMING NOT ALLOWED (and 
stores it in the SIM according to section 4.L2.2), and enters the MM sublayer state WAIT FOR NETWORK 
COMMAND. The mobile station shall consider the SIM as invalid until switch-off or the SIM is removed. 

4.5.1.2 Abnormal cases 

Mobile station side: 

a) RR connection failure or IMSI deactivation 

If an RR connection failure occurs or the IMSI is deactivated during the establishment of an MM connection, the 
MM connection establishment is aborted, timers T3230 is stopped, and an indication is given to the CM entity 
that requested the MM connection establishment. This shall be treated as a rejection for establishment of the new 
MM connection, and the MM sublayer shall release all active MM connections. 

b) T3230 expiry 

If T3230 expires (i.e. no response is given but a RR connection is available) the MM connection establishment is 
aborted and the requesting CM sublayer is informed. If no other MM connection exists then the mobile station 
shall proceed as described in section 4.5.3.1 for release of the RR connection. Otherwise the mobile station shall 
return to the MM sublayer state where the request of an MM connection was received, i.e. to MM sublayer state 
MM connection active. Other ongoing MM connections (if any) shall not be affected. 

c) Reject cause values #95, #96, #97, #99, #100, #1 1 1 received 

The same actions as on timer expiry shall be taken by the mobile station. 

d) Random access failure or RR connection establishment failure 

If the mobile station detects a random access failure or RR connection establishment failure during the 
establishment of an MM connection, it aborts the MM connection establishment and gives an indication to the 
CM entity that requested the MM connection establishment. 

NOTE: Further actions of the mobile station depend on the RR procedures and MM specific procedures during 
which the abnormal situation has occurred and are described together with those procedures. 

Network side: 

a) RR connection failure 

The actions to be taken upon RR connection failure within a MM common procedure are described together with 
that procedure. A RR connection failure occurring outside such MM common procedures, shall trigger the 
release of all active MM connections if any. 

b) Invalid message or message content 

Upon reception of an invalid initial message or a CM SERVICE REQUEST message with invalid content, a CM 
SERVICE REJECT message shall be returned with one of the following appropriate Reject cause indications: 

# 95: Semantically incorrect message 

# 96: Mandatory information element error 

# 97: Message type non-existent or not implemented 

# 99: Information element non-existent or not implemented 
#100: Conditional IE error 

#111: Protocol error, unspecified 

When the CM SERVICE REJECT message has been sent, the network may start RR connection release if no 
other MM connections exist or if the abnormal condition also has influence on the other MM connections. 
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4.5.1 .3 MM connection establishment initiated by the network 

4.5.1 .3.1 Mobile Terminating CM Activity 

When a CM sublayer entity in the network requests the MM sublayer to establish a MM connection, the MM sublayer 
will request the establishment of an RR connection to the RR sublayer if no RR connection to the desired mobile station 
exists. The MM sublayer is informed when the paging procedure is finished (see GSM 04.18 section 3.3.2 and TS 
25.331 section 8.2.1) and the mobile station shall enter the MM state WAIT FOR NETWORK COMMAND. 

(* editor's note: this does not appear to be stated any where other than in fig 4.1a. Without this statement, there does 
not seem to be anything to stop the mobile sending a CM SERVICE REQUEST message which might 
cross (ambiguously) with a SECURITY MODE COMMAND or a SECURITY MODE CONTROL 

message. *) 

In GSM, when an RR connection is established (or if it already exists at the time the request is received), the MM 
sublayer may initiate any of the MM common procedures (except IMSI detach); it may request the RR sublayer to 
perform the RR classmark interrogation procedure, and/or the security mode setting procedure. 

In UMTS, when an RR connection is established (or if it already exists at the time the request is received), the MM 
sublayer may initiate any of the MM common procedures (except IMSI detach); it may request the RR sublayer to 
perform the security mode control procedure. 

When all MM and RR procedures are successfully completed which the network considers necessary, the MM sublayer 
will inform the requesting mobile terminating CM sublayer entity on the success of the MM connection establishment. 

If an RR connection already exists and no MM specific procedure is running, the network may also establish a new 
mobile terminating MM connection by sending a CM message with a new PD/TI combination. 

In GSM, if the establishment of an RR connection is unsuccessful, or if any of the MM common procedures or the 
security mode setting fail, this is indicated to the CM layer with an appropriate error cause. 

In UMTS, if the establishment of an RR connection is unsuccessful, or if any of the MM common procedures or the 
security mode control fail, this is indicated to the CM layer with an appropriate error cause. 

If an RR connection used for a MM specific procedure exists to the mobile station, the CM request may be rejected or 
delayed depending on implementation. When the MM specific procedure has been completed, the network may use the 
same RR connection for the delayed CM request. 

Only applicable in case of VGCS talking: 

In the MM CONNECTION ACTIVE (GROUP TRANSMIT MODE) the mobile station is in RR Group transmit mode. 
There shall be only one MM connection active. 

When in MM CONNECTION ACTIVE (GROUP TRANSMIT MODE) state, the MM sublayer in the network shall 
reject the request for the establishment of another MM connection by any CM layer. 

If the RR sublayer in the network indicates a request to perform a transfer of the mobile station from RR connected 
mode to RR Group transmit mode which will result in a transition from MM CONNECTION ACTIVE state to MM 
CONNECTION ACTIVE (GROUP TRANSMIT MODE) state in the MM sublayer, the MM sublayer shall not allow 
the transition if more than one MM connection is active with the mobile station. 

4.5.1 .3.2 Mobile Originating CM Activity $(CCBS)$ 

When a CM sublayer entity in the network requests the MM sublayer to establish a MM connection, the MM sublayer 
will request the establishment of an RR connection to the RR sublayer if no RR connection to the desired mobile station 
exists. The MM sublayer is informed when the paging procedure is finished (see GSM 04.18 section 3.3.2 and TS 
25.331section 8.2.1)) and the mobile station shall enter the MM state WAIT FOR NETWORK COMMAND. 

In GSM, when an RR connection is established (or if it already exists at the time the request is received), the MM 
sublayer may initiate any of the MM common procedures (except IMSI detach), it may request the RR sublayer to 
perform the RR classmark interrogation procedure and/or the security mode setting procedure. 

In UMTS, when an RR connection is established (or if it already exists at the time the request is received), the MM 
sublayer may initiate any of the MM common procedures (except IMSI detach), it may request the RR sublayer to 
perform the security mode control procedure. 
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The network should use the information contained in the Mobile Station Classmark Type 2 IE on the mobile station's 
support for "Network Initiated MO CM Connection Request" to determine whether to: 

not start this procedure (eg if an RR connection already exists), or, 

to continue this procedure, or, 

to release the newly established RR connection. 

In the case of a "Network Initiated MO CM Connection Request" the network shall use the established RR connection 
to send a CM SERVICE PROMPT message to the mobile station. 

If the mobile station supports "Network Initiated MO CM Connection Request", the MM sublayer of the MS gives an 
indication to the CM entity identified by the CM SERVICE PROMPT message and enters the MM sublayer state 
PROCESS CM SERVICE PROMPT. In the state PROCESS CM SERVICE PROMPT the MM sublayer waits for 
either the rejection or confirmation of the recall by the identified CM entity. Any other requests from the CM entities 
shall either be rejected or delayed until this state is left. 

When the identified CM entity informs the MM sublayer, that it has send the first CM message in order to start the CM 
recall procedure the MM sublayer enters the state MM CONNECTION ACTIVE. 

If the identified CM entity indicates that it will not perform the CM recall procedure the MM sublayer starts timer 
T3240 and enter the state WAIT FOR NETWORK COMMAND, expecting the release of the RR connection. 

If the CM SERVICE PROMPT message is received by the MS in MM sublayer states WAIT FOR OUTGOING MM 
CONNECTION or in WAIT FOR ADDITIONAL OUTGOING MM CONNECTION then the mobile station shall send 
an MM STATUS message with cause " Message not compatible with protocol state". 

A mobile that does not support "Network Initiated MO CM Connection Request" shall return an MM STATUS 
message with cause #97 "message type non-existent or not implemented" to the network. 

If the mobile station supports "Network Initiated MO CM Connection Request" but the identified CM entity in the 
mobile station does not provide the associated support, then the mobile station shall send an MM STATUS message 
with cause "Service option not supported". In the case of a temporary CM problem (eg lack of transaction identifiers) 
then the mobile station shall send an MM STATUS message with cause "Service option temporarily out of order". 

If an RR connection already exists and no MM specific procedure is running, the network may use it to send the CM 
SERVICE PROMPT message. 

In GSM, if the establishment of an RR connection is unsuccessful, or if any of the MM common procedures or the 
security mode setting fail, this is indicated to the CM layer in the network with an appropriate error cause. 

In UMTS, if the establishment of an RR connection is unsuccessful, or if any of the MM common procedures or the 
security mode control fail, this is indicated to the CM layer in the network with an appropriate error cause. 

If an RR connection used for a MM specific procedure exists to the mobile station, the "Network Initiated MO CM 
Connection Request" may be rejected or delayed depending on implementation. When the MM specific procedure has 
been completed, the network may use the same RR connection for the delayed "Network Initiated MO CM Connection 
Request". 

4.5.1.4 Abnormal cases 

The behaviour upon abnormal events is described together with the relevant RR procedure or MM common procedure. 

4.5.1 .5 MM connection establishment for emergency calls 

A MM connection for an emergency call may be established in all states of the mobility management sublayer which 
allow MM connection establishment for a normal originating call. In addition, establishment may be attempted in all 
service states where a cell is selected (see 4.2.2) but not in the MM CONNECTION ACTIVE state (GROUP 
TRANSMIT MODE) state. However, as a network dependent option, a MM connection establishment for emergency 
call may be rejected in some of the states. 

Note: In GSM, if a mobile station is camping in a network where voice services are not available 

(CELL_BAR_QUALIFY_2 parameter indicates no voice service) and requests an emergency call service, 
the mobile station shall immediately go to "Any Cell Selection" state as defined in GSM 03.22, prior to 
establishing the emergency call. 
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When a user requests an emergency call establishment the mobile station will send a CM SERVICE REQUEST 
message to the network with a CM service type information element indicating emergency call establishment. If the 
network does not accept the emergency call request, e.g., because IMEI was used as identification and this capability is 
not supported by the network, the network will reject the request by returning a CM SERVICE REJECT message to the 
mobile station. 

The reject cause information element indicates the reason for rejection. The following cause values may apply: 

#3 "Illegal MS" 

#4 "IMSI unknown in VLR" 

#5 "IMEI not accepted" 

#6 "Illegal ME" 

#17 "Network failure" 

#22 "Congestion" 

#32 "Service option not supported" 

#34 "Service option temporarily out of order" 

With the above defined exceptions, the procedures described for MM connection establishment in 4.5.1.1 and 4.5.1.2 
shall be followed. 

NOTE: Normally, the mobile station will be identified by an IMSI or a TMSI. However, if none of these 

identifiers is available in the mobile station, then the mobile station shall use the IMEI for identification 
purposes. The network may in that case reject the request by returning a CM SERVICE REJECT message 
with reject cause: 

#5 "IMEI not accepted". 

4.5.1.6 Call re-establishment 

The re-establishment procedure allows a MS to resume a connection in progress after a radio link failure, possibly in a 
new cell and possibly in a new location area. The conditions in which to attempt call re-establishment or not depend on 
the call control state, see section 5.5.4 and, whether or not a cell allowing call re-establishment has been found (as 
described in GSM 05.08). MM connections are identified by their protocol discriminators and transaction identifiers: 
these shall not be changed during call re-establishment. 

The re-establishment takes place when a lower layer failure occurs and at least one MM connection is active (i.e.. the 
mobile station's MM sublayer is either in state 6 "MM CONNECTION ACTIVE" or state 20 "WAIT FOR 
ADDITIONAL OUTGOING MM CONNECTION"). 

NOTE: During a re-establishment attempt the mobile station does not return to the MM IDLE state; thus no 

location updating is performed even if the mobile is not updated in the location area of the selected cell. 

No call re-establishment shall be performed for voice group and broadcast calls. 

4.5.1 .6.1 Call re-establishment, initiation by the mobile station 

NOTE: The network is unable to initiate call re-establishment. 

If at least one request to re-establish an MM connection is received from a CM entity as a response to the indication that 
the MM connection is interrupted (see 4.5.2.3.) the mobile station initiates the call re-establishment procedure. If 
several CM entities request re-establishment only one re-establishment procedure is initiated. If any CM entity requests 
re-establishment, then re-establishment of all transactions belonging to all Protocol Discriminators that permit Call Re- 
establishment shall be attempted. 

Upon request of a CM entity to re-establish an MM connection the MM sublayer requests the RR sublayer to establish 
an RR connection and enters MM sublayer state WAIT FOR REESTABLISH. This request contains an establishment 
cause and a CM RE-ESTABLISHMENT REQUEST message. When the establishment of an RR connection is 
indicated by the RR sublayer (this indication implies that the CM RE-ESTABLISHMENT REQUEST message has 
been successfully transferred via the radio interface, see section 2.2), the MM sublayer of the mobile station starts timer 
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T3230, gives an indication to all CM entities that are being re-established, and remains in the MM sublayer state WAIT 
FOR REESTABLISH. 

The CM RE-ESTABLISHMENT REQUEST message contains the 

mobile identity according to section 10.5.1.4; 

mobile station classmark 2; 

ciphering key sequence number. 

NOTE: Whether or not a CM entity can request re-establishment depends upon the Protocol Discriminator. The 
specifications for Short Message Service (GSM 04. 11), Call Independent Supplementary Services 
(TS 24.010) and Location Services (TS 24.071) do not currently specify any re-establishment procedures. 

Upon receiving a CM RE-ESTABLISHMENT REQUEST message, the network shall analyse its content. Depending 
on the type of request, the network may start any of the MM common procedures and RR procedures. 

The network may initiate the classmark interrogation procedure, for example, to obtain further information on the 
mobile station's encryption capabilities. 

The identification procedure (see section 4.3.3) may be invoked. 

The network may invoke the authentication procedure (see section 4.3.2). 

In GSM, the network decides if the security mode setting procedure shall be invoked (see GSM 04.18 section 3.4.7). 

An indication from the RR sublayer that the security mode setting procedure is completed, or reception of a CM 
SERVICE ACCEPT message, shall be treated as a service acceptance indication by the mobile station. 

In UMTS, the network decides if the security mode control procedure shall be invoked (see section 8.1.10 in TS 
25.331). An indication from the RR sublayer that the security mode control procedure is completed, or reception of a 
CM SERVICE ACCEPT message, shall be treated as a service acceptance indication by the mobile station. 

The MM connection re-establishment is completed, timer T3230 shall be stopped, all CM entities associated with the 
re-establishment shall be informed, and MM sublayer state MM CONNECTION ACTIVE is re-entered. All the MM 
connections are considered to be active. 

If the network cannot associate the re-establishment request with any existing call for that mobile station, a CM 
SERVICE REJECT message is returned with the reject cause: 

#38 "call cannot be identified" 

If call re-establishment cannot be performed for other reasons, a CM SERVICE REJECT is returned, the appropriate 
reject cause may be any of the following (see annex G): 

# 4 "IMSI unknown in VLR"; 

#6 "illegal ME"; 

#17 "network failure"; 

#22 "congestion"; 

#32 "service option not supported"; 

#34 "service option temporarily out of order". 

Whatever the reject cause a mobile station receiving a CM SERVICE REJECT as a response to the CM RE- 
ESTABLISHMENT REQUEST shall stop T3230, release all MM connections and proceed as described in section 
4.5.3.1. In addition: 

if cause value #4 is received, the mobile station deletes any TMSI, LAI and ciphering key sequence number in 
the SIM, changes the update status to NOT UPDATED (and stores it in the SIM according to section 4.1.2.2), 
and enters the MM sublayer state WAIT FOR NETWORK COMMAND. If subsequently the RR connection is 
released or aborted, this will force the mobile station to initiate a normal location updating). The CM re- 
establishment request shall not be memorized during the location updating procedure. 
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if cause value #6 is received, the mobile station deletes any TMSI, LAI and ciphering key sequence number in 
the SIM, changes the update status to ROAMING NOT ALLOWED (and stores it in the SIM according to 
section 4.L2.2), and enters the MM sublayer state WAIT FOR NETWORK COMMAND. The MS shall 
consider the SIM as invalid until switch-off or the SIM is removed. 

4.5.1.6.2 Abnormal cases 

Mobile station side: 

a) Random access failure or RR connection establishment failure 

If the mobile station detects a random access failure or RR connection establishment failure during the re- 
establishment of an MM connection, the re-establishment is aborted and all MM connections are released. 

b) RR connection failure 

If a RR connection failure occurs, timer T3230 is stopped, the re-establishment is aborted and all active MM 
connections are released. 

c) IMSI deactivation 

If the IMSI deactivated during the re-establishment attempt then timer T3230 is stopped, the re-establishment is 
aborted and all MM connections are released. 

d) T3230 expires 

If T3230 expires (i.e. no response is given but a RR connection is available) the re-establishment is aborted, all 
active MM connections are released and the mobile station proceeds as described in section 4.5.3. L 

e) Reject causes #96, #97, #99, #100, #1 1 1 received 

The mobile station shall perform the same actions as if timer T3230 had expired. 
Network side: 

a) RR connection failure 

If a RR connection failure occurs after receipt of the CM RE-ESTABLISHMENT REQUEST the network shall 
release all MM connections. 

b) Invalid message content 

Upon reception an invalid initial of message or a CM RE-ESTABLISHMENT REQUEST message with invalid 
content, a CM SERVICE REJECT message shall be returned with one of the following appropriate Reject cause 
indications: 

#96: Mandatory information element error 

#99: Information element non-existent or not implemented 

#100: Conditional IE error 

#111: Protocol error, unspecified 

When the CM SERVICE REJECT message has been sent, the network shall release the RR connection. 

4.5.1 .7 Forced release during MO MM connection establishment 

If the mobile station's CM layer initiated the MM connection establishment but the CM layer wishes to abort the 
establishment prior to the completion of the establishment phase, the mobile station shall send a CM SERVICE 
ABORT message any time after the completion of the RR connection and not after the first CM message (e.g. SETUP) 
is sent. 

If the first CM message has already been sent, the normal release procedure defined by the appropriate CM protocol 
applies and the CM SERVICE ABORT shall not be sent. 
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Sending of the CM SERVICE ABORT message is only allowed during the establishment of the first MM connection, 
where no other MM connection exists in parallel. If parallel MM connections exist already, a new connection 
establishment cannot be aborted and normal MM connection release according to 4.5.3 applies after MM connection 
establishment. 

Upon transmission of the CM SERVICE ABORT message the mobile station shall set timer T3240 and enter the state 
WAIT FOR NETWORK COMMAND, expecting the release of the RR connection. 

Upon receipt of the CM SERVICE ABORT message the network shall abort ongoing processes, release the appropriate 
resources, and unless another MM connection establishment is pending, initiate a normal release of the RR connection. 

If the RR connection is not released within a given time controlled by timer T3240, the mobile station shall abort the 
RR connection. In both cases, either after a RR connection release triggered from the network side or after a RR 
connection abort requested by the mobile station side the mobile station shall return to state MM IDLE; the service state 
depending upon the current update status as specified in section 4.2.3. 

4.5.2 MM connection information transfer pinase 

After the MM connection has been established, it can be used by the CM sublayer entity for information transfer. 
According to the protocol architecture described in TS 24.007, each CM entity will have its own MM connection. These 
different MM connections are identified by the protocol discriminator PD and, additionally, by the transaction identifier 
TI. 

All MM common procedures may be initiated at any time while MM connections are active. Except for Short Message 
Control which uses a separate layer 2 low priority data link, no priority mechanism is defined between the CM, MM 
and RR sublayer messages. 

4.5.2.1 Sending CM messages 

A CM sublayer entity, after having been advised that a MM connection has been established, can request the transfer of 
CM messages. The CM messages passed to the MM sublayer are then sent to the other side of the interface with the PD 
and TI set according to the source entity. 

4.5.2.2 Receiving CM messages 

Upon receiving a CM message, the MM sublayer will distribute it to the relevant CM entity according to the PD value 
and TI value. However, if the received CM message is the first for the MM connection (identified by PD and TI), the 
MM sublayer will in addition indicate to the CM entity that a new MM connection has been established. 

4.5.2.3 Abnormal cases 

RR connection failure: 

If the RR connection failure occurs during a RR or MM common procedure, the consequent actions are 
described together with that procedure. 

In other cases, the following applies: 

Mobile station: 

The MM sublayer shall indicate to all CM entities associated with active MM connections that the MM 
connection is interrupted, the subsequent action of the MM sublayer (call re-establishment, see 4.5.1.6, or local 
release) will then depend on the decisions by the CM entities. 

Network: 

The MM sublayer shall locally release all active MM connections. As an option the network may delay the 
release of all or some of the MM connections to allow the mobile station to initiate call re-establishment 

4.5.3 MM connection release 

An established MM connection can be released by the local CM entity. The release of the CM connection will then be 
done locally in the MM sublayer, i.e. no MM message are sent over the radio interface for this purpose. 
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4.5.3.1 Release of associated RR connection 

If all MM connections are released by their CM entities, the mobile station shall set timer T3240 and enter the state 
WAIT FOR NETWORK COMMAND, expecting the release of the RR connection. 

In the network, if the last MM connection is released by its user, the MM sublayer may decide to release the RR 
connection. The RR connection may be maintained by the network, e.g. in order to establish another MM connection. 

If the RR connection is not released within a given time controlled by the timer T3240, the mobile station shall abort the 
RR connection. In both cases, either after a RR connection release triggered from the network side or after a RR 
connection abort requested by the MS-side, the MS shall return to MM IDLE state; the service state depending upon the 
current update status as specified in section 4.2.3. 

4.5.3.2 Uplink release in a voice group call 

(Only applicable for mobile stations supporting VGCS talking:) 

If a mobile station which is in the MM sublayer state MM CONNECTION ACTIVE (GROUP TRANSMIT MODE) 
receives a request from the GCC sublayer to perform an uplink release, the MM sublayer requests the RR sublayer to 
perform an uplink release procedure and enters the MM sublayer state RECEIVING GROUP CALL (NORMAL 
SERVICE). 

4.6 Receiving a IVIIVI STATUS message by a IVIIVI entity. 

If the MM entity of the mobile station receives a MM STATUS message no state transition and no specific action shall 
be taken as seen from the radio interface, i.e. local actions are possible. 

With the exceptions described for the responses to the CM SERVICE PROMPT message, the actions to be taken on 
receiving a MM STATUS message in the network are an implementation dependent option. 

4.7 Elementary mobility management procedures for GPRS 
services 

4.7.1 General 

This section describes the basic functions offered by the mobility management (GMM) sublayer at the radio interface 
(reference point Um/Uu)- The functionality is described in terms of timers and procedures. During GMM procedures, 
session management procedures and SMS procedures, see chapter 6, are suspended. 

4.7.1.1 Lower layer failure 

The lower layers shall indicate a logical link failure or an RR sublayer failure or an RRC sublayer failure to the GMM 
sublayer. The failure indicates an error that cannot be corrected by the lower layers. 

4.7.1 .2 Ciphering of messages (GSM only) 

If ciphering is to be applied on a GMM context, all GMM messages shall be ciphered except the following messages: 

- ATTACH REQUEST; 

- ATTACH REJECT; 

-- AUTHENTICATION AND CIPHERING REQUEST; 

- AUTHENTICATION AND CIPHERING RESPONSE; 

- AUTHENTICATION AND CIPHERING REJECT; 

- IDENTITY REQUEST; 

- IDENTITY RESPONSE; 
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- ROUTING AREA UPDATE REQUEST; and 

- ROUTING AREA UPDATE REJECT. 

4.7.1.3 P-TMSI signature 

The network may assign a P-TMSI signature to an MS in an attach, routing area update, or P-TMSI reallocation 
procedure. Only in combination with a valid P-TMSI, this P-TMSI signature is used by the MS for authentication and 
identification purposes in the subsequent attach , routing area update, service request or detach procedure. If the MS has 
no valid P-TMSI it shall not use the P-TMSI signature in the subsequent attach, routing area update, service request or 
detach procedure. Upon completion completion of the subsequent attach routing area update, service request or detach 
procedure the used P-TMSI signature shall be deleted. 

4.7.1 .4 Radio resource sublayer address handling 

In GSM, while a packet TMSI (P-TMSI) is used in the GMM sublayer for identification of an MS, a temporary logical 
link identity (TLLI) is used for addressing purposes at the RR sublayer.. 

In UMTS a Radio Network Temporary Identity (RNTI) identifies a UMTS user between the MS and the UTRAN. The 
relationship between RNTI and IMSI is known only in the MS and in the UTRAN, see TS 25.30I[I0] 

4.7.1 .4.1 Radio resource sublayer address handling (GSM only) 

This section describes how the RR addressing is managed by GMM. For the detailed coding of the different TLLI types 
and how a TLLI can be derived from a P-TMSI, see TS 23.003 [10]. 

Two cases can be distinguished: 

- a valid P-TMSI is available in the MS; or 

- no valid P-TMSI is available in the MS 

NOTE: For anonymous access, the RR address assignment is handled by the SM sublayer as described in section 
6.1.1.1. 

i) valid P-TMSI available 

If the MS has stored a valid P-TMSI, the MS shall derive a foreign TLLI from that P-TMSI and shall use it for 
transmission of the: 

ATTACH REQUEST message of any GPRS combined/non-combined attach procedure; and 

- ROUTING AREA UPDATE REQUEST message of a combined/non-combined RAU procedure if the MS 
has entered a new routing area, or if the GPRS update status is not equal to GUI UPDATED. 

Any other GMM message is transmitted using a local TLLI derived from the stored P-TMSI. This includes a 
ROUTING AREA UPDATE REQUEST message that is sent within a periodic routing area update procedure. 

ii) no valid P-TMSI available 

When the MS has not stored a valid P-TMSI, i.e. the MS is not attached to GPRS, the MS shall use a randomly 
selected random TLLI for transmission of the: 

ATTACH REQUEST message of any combined/non-combined GPRS attach procedure. 

The same randomly selected random TLLI value shall be used for all message retransmission attempts and for the 
cell updates within one attach attempt. 

Upon receipt of an ATTACH REQUEST message, the network assigns a P-TMSI to the MS, derives a local TLLI 
from the assigned P-TMSI, and transmits the assigned P-TMSI to the MS. 

Upon receipt of the assigned P-TMSI, the MS shall derive the local TLLI from this P-TMSI and shall use it for 
addressing at lower layers. 

In both cases, the MS shall acknowledge the reception of the assigned P-TMSI to the network. After receipt of the 
acknowledgement, the network shall use the local TLLI for addressing at lower layers. 
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4.7.1.5 P-TMSI handling 

4.7.1 .5.1 PTMSI handling in GSM 

If a new P-TMSI is assigned by the network the MS and the network shall handle the old and the new P-TMSI as 
follows: 

Upon receipt of a GMM message containing a new P-TMSI the MS shall consider the new P-TMSI and new RAI and 
also the old P-TMSI and old RAI as valid in order to react to paging requests and downlink transmission of LLC 
frames. For uplink transmission of LLC frames the new P-TMSI shall be used. 

The MS shall consider the old P-TMSI and old RAI as invalid as soon as an LLC frame is received with the local TLLI 
derived from the new P-TMSI. 

Upon the transmission of a GMM message containing a new P-TMSI the network shall consider the new P-TMSI and 
new RAI and also the old P-TMSI and old RAI as valid in order to be able to receive LLC frames from the MS. 

The network shall consider the old P-TMSI and old RAJ as invalid as soon as an LLC frame is received with the local 
TLLI derived from the new P-TMSI. 

4.7.1 .5.2 PTMSI handling in UMTS 

If a new P-TMSI is assigned by the network the MS and the network shall handle the old and the new P-TMSI as 
follows: 

Upon receipt of a GMM message containing a new P-TMSI the MS shall consider the new P-TMSI and new RAJ as 
valid. Old P-TMSI and P-TMSI signature are regarded as invalid. 

The network shall consider the old P-TMSI and old RAI as invalid as soon as an acknowledge message (e.g. ATTACH 
COMPLLETE, ROUTING AREA UPDATE COMPLETE and P-TMSI REALLOCATION COMPLETE) is received. 



4.7.1 .6 Change of network mode of operation 

In the following tables below the abbreviations 'GSM I', 'GSM IF and 'GSM III' are used for network operation mode 
I, II and III in GSM. 

In the following tables below the abbreviations 'UMTS F and 'UMTS IF are used for network operation modes I and 
II in UMTS. 

4.7.1 .6.1 Change of network mode of operation in GSM (GSM only) 

Whenever an MS moves to a new RA, the procedures executed by the MS depend on the network mode of operation in 
the old and new routing area. 

In case the MS is in state GMM-REGISTERED or GMM-ROUTING-AREA-UPDATING-INITIATED and is in 
operation mode: 

a) A or B (with the exceptions in b and c below), the MS shall execute: 

Table 4.7.1. 6.1/TS 24.008: Mode A or B 



Network operation 
mode change 


Procedure to execute 


I ^ II or I ^ III 


Normal Location Update(*), 

followed by a Normal Routing Area Update 


II -^ III or III -4 II 


Normal Location Update (see section 4.2.2), 
followed by a Normal Routing Area Update 


II ^ I or III -^ I 


Combined Routing Area Update with IMSI attach 



b) B which reverts to operation mode C in network operation mode III, the MS shall execute: 
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Table 4.7.1. 6.2/TS 24.008: Mode B which reverts into mode C in network operation mode III 



Network operation 
mode change 


Procedure to execute 


I ^11 


Normal Location Update(*), 

followed by a Normal Routing Area Update 


I^ III or 11^ III 


IMSI Detach (see section 4.3.4), 

followed by a Normal Routing Area Update 


II ^ I or III -^ I 


Combined Routing Area Update with IMSI attach 


III -^ II 


IMSI attach (see section 4.4.3), 

followed by a Normal Routing Area Update 



c) B which reverts to IMSI attached for CS services only in network operation mode III, the MS shall execute: 

Table 4.7.1. 6.3/TS 24.008: Mode B which reverts into IMSI attached for CS services only in network 

operation mode III 



Network operation 
mode change 


Procedure to execute 


I ^11 


Normal Location Update(*), 

followed by a Normal Routing Area Update 


I-^ III 


Normal Location Update(*), 

followed by a GPRS Detach with type indicating "GPRS Detach" 


11^ III 


Normal Location Update (see section 4.2.2), 

followed by a GPRS Detach with detach type indicating "GPRS Detach" 


11^ I 


Combined Routing Area Update with IMSI attach 


III^I 


Combined GPRS Attach 


III -^ II 


Normal Location Update (see section 4.2.2), 
followed by a Normal GPRS Attach 



(*) Intended to remove the Gs association in the MSC/VLR. 
Further details are implementation issues. 

4.7.1 .6.2 Change of network mode of operation in UMTS (UMTS only) 

Whenever an MS moves to a new RA, the procedures executed by the MS depend on the network mode of operation in 
the old and new routing area. 

In case the MS is in state GMM-REGISTERED or GMM-ROUTING-AREA-UPDATING-INITIATED and is in 
operation mode A, the MS shall execute: 

Table 4.7.1 .6.4/TS 24.008: Mode A 



Network operation 
mode change 


Procedure to execute 


I ^11 


Normal Location Update(*), 

followed by a Normal Routing Area Update 


11^ I 


Combined Routing Area Update with IMSI attach 



(*) Intended to remove the Gs association in the MSC/VLR. 
Further details are implementation issues. 



4.7.1.6.3 



Change of network mode of operation at UMTS to GSM inter-system change 



Whenever an MS moves to a new RA supporting the GSM radio interface, the procedures executed by the MS depend 
on the network mode of operation in the old and new routing area. 

Whenever an MS moves to a new cell suporting the GSM radio interface within the same RA, the selective procedures 
as specified in section 4.7.5 apply. 
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In case the MS is in state GMM-REGISTERED or GMM-ROUTING-AREA-UPDATING-INITIATED and is in 
operation mode: 

a) A in UMTS, an MS that changes to GPRS operation mode A or B in GSM shall execute: 

Table 4.7.1. 6.5/TS 24.008: Mode A in UMTS changing to GPRS mode A or B in GSM 



Network operation 
mode change 


Procedure to execute 


UMTS I -^ GSM I 


Combined Routing Area Update 


UMTS II -> GSM I 


Combined Routing Area Update with IMSI attach 


UMTS I -^ GSM II or 
UMTS I -^ GSM III 


Normal Location Update(*), 

followed by a Normal Routing Area Update 



b) A in UMTS, an MS that changes due to MS specific characteristics to GPRS operation mode C in network 
operation mode III in GSM shall execute: 

Table 4.7.1 .6.6/TS 24.008: Mode A in UMTS changing to GPRS mode C in GSM 



Network operation 
mode change 


Procedure to execute 


UMTS I -^ GSM III or 
UMTS II -^ GSM III 


IMSI detach (see section 4.3.4), 

followed by a Normal Routing Area Update 



c) A in UMTS, an MS that changes due to MS specific characteristics to IMSI attached for CS services only in 
network operation mode III in GSM shall execute: 

Table 4.7.1 .6.7/TS 24.008: Mode A in UMTS changing to IMSI attached for CS services only in GSM 



Network operation 
mode change 


Procedure to execute 


UMTS I -^ GSM III or 
UMTS II -^ GSM III 


Normal Location Update (see section 4.4.1), 

followed by a GPRS Detach with detach type indicating "GPRS Detach" 



d) C in UMTS, the MS shall change to GPRS operation mode C in GSM and shall execute the normal Routing 
Area Update procedure 

e) CS in UMTS, the MS shall execute the normal Location Update procedure 
(*) Intended to remove the Gs association in the MSC/VLR. 

Further details are implementation issues. 

4.7.1 .6.3 Change of network mode of operation at GSM to UMTS inter-system change 

Whenever an MS moves to a new RA supporting the UMTS radio interface, the procedures executed by the MS depend 
on the network mode of operation in the old and new routing area. 

Whenever an MS moves to a new cell supporting the UMTS radio interface whithin the same RA, the selective 
procedures as specified in section 4.7.5 apply. 

In case the MS is in state GMM-REGISTERED or GMM-ROUTING-AREA-UPDATING-INITIATED and is in 
operation mode: 

a) A or B in GSM, the MS shall change to operation mode A in UMTS and shall execute: 

Table 4.7.1. 6.8/TS 24.008: Mode A or B in GSM changing to mode A in UMTS 
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Network operation mode 
change 


Procedure to execute 


GSM I -^ UMTS I 


Combined Routing Area Update 


GSM II -^ UMTS I 


Combined Routing Area Update with IMSI attach 


GSM I -^ UMTS II 


Normal Location Update(*), 

followed by a Normal Routing Area Update 


GSM II -^ UMTS II or 
GSM III -^ UMTS II 


Normal Location Update, 

followed by a Normal Routing Area Update 



b) C in GSM, an MS that changes to operation mode C in UMTS shall execute a Normal Routing Area Update. 

c) C in GSM, an MS that, due to MS specific characteristics operated in GPRS operation mode C in network 
operation mode III in GSM changes to operation mode A in UMTS shall execute: 

Table 4.7.1. 6.9/TS 24.008: Mode C changing to mode A in UMTS 



Network operation 
mode change 


Procedure to execute 


GSM III -^ UMTS I 


Combined Routing Area Update with IMSI attach 


GSM III -^ UMTS II 


IMSI attach (see section 4.4.3), 

Followed by a Normal Routing Area Update 



d) IMSI attached for non-GPRS services only, an MS that, due to MS specific characteristics, operated in 
network operation mode III in GSM and changes to operation mode A in UMTS shall execute: 

Table 4.7.1. 6.10/TS 24.008: IMSI attached for non-GPRS services only changing to mode A in UMTS 



Network operation 
mode change 


Procedure to execute 


GSM III -^ UMTS I 


Combined GPRS Attach for GPRS and non-GPRS services 


GSM III -^ UMTS II 


GPRS Attach 



(*) Intended to remove the Gs association in the MSC/VLR. 

Further details are implementation issues. 



4.7.2 GPRS Mobility management timers and UMTS PS signalling 
connection control 



4.7.2.1 



READY timer behaviour 



4.7.2.1.1 



READY timer behaviour (GSM only) 



The READY timer, T3314 is used in the MS and in the network per each assigned P-TMSI to control the cell updating 
procedure. 

When the READY timer is running or has been deactivated the MS shall perform cell update each time a new cell is 
selected (see TS 23.022 [14]). If a routing area border is crossed, a routing area updating procedure shall be performed 
instead of a cell update. 

When the READY timer has expired the MS shall: 

- perform the routing area updating procedure when a routing area border is crossed; 

not perform a cell update when a new cell is selected. 

All other GMM procedures are not affected by the READY timer. 
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The READY timer is started: 

in the MS when the GMM entity receives an indication from lower layers that an LLC frame has been 
transmitted on the radio interface; and 

in the network when the GMM entity receives an indication from lower layers that an LLC frame has been 
successfully received by the network. 

Within GMM signalling procedures the network includes a 'force to standby' information element, in order to indicate 
whether or not the READY timer shall be stopped when returning to the GMM-REGISTERED state. If the 'force to 
standby' information element is received within more than one message during a ongoing GMM specific procedure, the 
last one received shall apply. If the READY timer is deactivated and the network indicates 'force to standby' with the 
'force to standby' information element, this shall not cause a modification of the READY timer. 

The READY timer is not affected by state transitions to and from the GMM-REGISTERED.SUSPENDED sub-state. 

The value of the READY timer may be negotiated between the MS and the network using the GPRS attach or GPRS 
routing area updating procedure. 

If the MS wishes to indicate its preference for a READY timer value it shall include the preferred values into the 
ATTACH REQUEST and/or ROUTING AREA UPDATE REQUEST messages. The preferred values may be 
smaller, equal to or greater than the default values or may be equal to the value requesting the READY Timer 
function to be deactivated. 

Regardless of whether or not a timer value has been received by the network in the ATTACH REQUEST or 
ROUTING AREA UPDATE REQUEST messages, the network may include a timer value for the READY timer 
(different or not from the default value) into the ATTACH ACCEPT or ROUTING AREA UPDATE ACCEPT 
messages, respectively. If the READY Timer value was included, it shall be applied for the GMM context by the 
network and by the MS. 

When the MS proposes a READY Timer value and the Network does not include any READY Timer Value in 
its answer, then the value proposed by the MS shall be applied for the GMM context by the Network and by the 
MS. 

- When neither the MS nor the Network proposes a READY Timer value into the ATTACH ACCEPT or 
ROUTING AREA UPDATE ACCEPT message, then the default value shall be used. 

If the negotiated READY timer value indicates that the ready timer function is deactivated, the READY timer shall 
always run without expiry. If the negotiated READY timer value indicates that the ready timer function is deactivated, 
and within the same procedure the network indicates 'force to standby' with the 'force to standby' information element, 
the READY timer shall always run without expiry. If the negotiated READY timer value is set to zero, READY timer 
shall be stopped immediately. 

To account for the LLC frame uplink transmission delay, the READY timer value should be slightly shorter in the 
network than in the MS. This is a network implementation issue. 

If a new READY timer value is negotiated, the MS shall upon the reception of the ATTACH ACCEPT or ROUTING 
AREA UPDATE ACCEPT message perform a initial cell update (either by transmitting a LLC frame or, if required, a 
ATTACH COMPLETE or ROUTING AREA UPDATE COMPLETE message), in order to apply the new READY 
timer value immediately. If the new READY timer value is set to zero or if the network indicates 'force to standby' with 
the 'force to standby' IE, the initial cell update should not be done. 

4.7.2.1 .2 Handling of READY timer in UMTS (UMTS only) 

The READY timer is not applicable for UMTS. 

An MS may indicate a READY timer value to the network in the ATTACH REQUEST and the ROUTING AREA 
UPDATE REQUEST messages. 

If a READY timer value is received by an MS capable of both UMTS and GSM in the ATTACH ACCEPT or the 
ROUTING AREA UPDATE ACCEPT messages, then the received value shall be stored by the MS in order to be used 
at an intersystem change from UMTS to GSM. 
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4.7.2.2 Periodic routing area updating 

Periodic routing area updating is used to periodically notify the availability of the MS to the network. The procedure is 
controlled in the MS by the periodic RA update timer, T3312. The value of timer T3312 is sent by the network to the 
MS in the messages ATTACH ACCEPT and ROUTING AREA UPDATE ACCEPT. The value of the timer T3312 
shall be unique within a RA. 

In GSM, the timer T3312 is reset and started with its initial value, when the READY timer is stopped or expires. The 
timer T3312 is stopped and shall be set to its initial value for the next start when the READY timer is started. If after a 
READY timer negotiation the READY timer value is set to zero, timer T3312 is reset and started with its initial value 
.If the initial READY timer value is zero, the timer T3312 is reset and started with its initial value, when the ROUTING 
AREA UPDATE REQUEST message is transmitted. 

In UMTS, the timer T3312 is reset and started with its initial value, when the MS goes from PMM-CONNECTED to 
PMM-IDLE mode. The timer T3312 is stopped when the MS enters PMM-CONNECTED mode. 

When timer T3312 expires, the periodic routing area updating procedure shall be started and the timer shall be set to its 
initial value for the next start. 

If the MS is in other state than GMM-REGISTERED.NORMAL-SERVICE when the timer expires the periodic routing 
area updating procedure is delayed until the MS returns to GMM-REGISTERED.NORMAL-SERVICE. 

In GSM, if the MS in MS operation mode B is in the state GMM-REGISTERED.SUSPENDED when the timer expires 
the periodic routing area updating procedure is delayed until the state is left. 

The network supervises the periodic routing area updating procedure by means of the Mobile Reachable timer. The 
Mobile Reachable timer shall be longer than the periodic RA update timer. When the Mobile Reachable timer expires, 
typically the network stops sending paging messages to the mobile and may take other appropriate actions. 

In GSM, the Mobile Reachable timer is reset and started with its initial value, when the READY timer is stopped or 
expires. The Mobile Reachable timer is stopped and shall be set to its initial value for the next start when the READY 
timer is started. 

In GSM, if after a READY timer negotiation the READY timer value is set to zero the Mobile Reachable timer is reset 
and started with its initial value. If the initial READY timer value is zero, the Mobile Reachable is reset and started with 
its initial value, when the ROUTING AREA UPDATE REQUEST message is received. 

In UMTS, the Mobile Reachable timer is reset and started with its initial value, when the MS goes from PMM- 
CONNECTED to PMM-IDLE mode. The Mobile Reachable timer is stopped when the MS enters PMM-CONNECTED 
mode. 

If the MS is both IMSI attached for GPRS and non-GPRS services , and if the MS lost coverage of the registered PLMN 
and timer T3312 expires, then: 

a) if the MS returns to coverage in a cell that supports GPRS and that indicates that the network is in network 
operation mode I, then the MS shall either perform the combined routing area update procedure indicating 
"combined RA/LA updating with IMSI attach"; or 

b) if the MS returns to coverage in a cell in the same RA that supports GPRS and that indicates that the network is 
in network operation mode II or III, then the MS shall perform the periodic routing area updating procedure 
indicating "Periodic updating" and shall perform the periodic location updating procedure ; or 

c) if the MS returns to coverage in a cell that does not support GPRS, then, depending upon the LA of the cell, the 
MS shall either perform the periodic location updating procedure or a normal location updating procedure. In 
addition, the MS shall perform a combined routing area update procedure indicating "combined RA/LA updating 
with IMSI attach" when the MS enters a cell that supports GPRS and that indicates that the network is in 
network operation mode I; or 

d) if the MS returns to coverage in a new RA the description given in section 4.7.5 applies. 

If the MS is both IMSI attached for GPRS and non-GPRS services in a network that operates in network operation 
mode I, and if the MS has camped on a cell that does not support GPRS, and timer T3312 expires, then the MS shall 
start an MM location updating procedure. In addition, the MS shall perform a combined routing area update procedure 
indicating "combined RA/LA updating with IMSI attach" when the MS enters a cell that supports GPRS and indicates 
that the network is in operation mode I. 
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In GSM, timer T3312 shall not be stopped when a GPRS MS enters state GMM-REGISTERED.SUSPENDED. 

4.7.2.3 PMM-IDLE mode and PMM-CONNECTED mode (UMTS only) 

An MS shall enter PMM-CONNECTED mode when a PS signalling connection for packet switched domain is 
established between the MS and the network. The MS shall not perform periodic routing area update in PMM- 
CONNECTED mode. 

An MS shall enter PMM-IDLE mode when the PS signalling connection for packet switched domain between the MS 
and the network has been released. The MS shall perform periodic routing area update in PMM-IDLE mode. 

4.7.2.4 Handling of Force to standby in UMTS (UMTS only) 

Force to standby is not applicable for UMTS. 

The network shall always indicate Force to standby not indicated in the Force to standby information element. 

The Force to standby information element shall be ignored by the MS. 

4.7.3 GPRS attach procedure 

The GPRS attach procedure is used for two purposes: 

- normal GPRS attach, performed by the MS to IMSI attach for GPRS services only. The normal GPRS attach 
procedure shall be used by GPRS MSs in MS operation mode C, independent of the network operation mode. It 
shall also be used by GPRS MSs in MS operation modes A or B if the network operates in network operation 
mode II or III . 

combined GPRS attach procedure, used by GPRS MSs in MS operation modes A or B to attach the IMSI for 
GPRS and non-GPRS services provided that the network operates in network operation mode I. 

With a successful GPRS attach procedure a GMM context is established. 

Section 4.7.3.1 describes the GPRS attach procedure to attach the IMSI only for GPRS services. The combined GPRS 
attach procedure used to attach the IMSI for both GPRS and non-GPRS services is described in section 4.7.3.2. 

If an IMSI attach for non-GPRS services is requested and a GMM context exists, the routing area updating procedure 
shall be used as described in section 4.7.5.2. 

To limit the number of subsequently rejected attach attempts, a GPRS attach attempt counter is introduced. The GPRS 
attach attempt counter shall be incremented as specified in section 4.7.3. L5. Depending on the value of the GPRS 
attempt counter, specific actions shall be performed. The GPRS attach attempt counter shall be reset when: 

the MS is powered on; 

a SIM is inserted; 

a GPRS attach procedure is successfully completed; or 

a combined GPRS attach procedure is completed for GPRS services only with cause #2, #16, #17 or #22 

a GPRS attach procedure is completed with cause #11, #12 or #13, 

and additionally when the MS is in substate ATTEMPTING-TO- ATTACH: 

expiry of timer T3302; 

a new routing area is entered; or 

an attach is triggered by CM sublayer requests. 

The mobile equipment shall contain a list of "forbidden location areas for roaming", as well as a list of "forbidden 
location areas for regional provision of service". The handling of these lists is described in section 4.4. 1 ; the same lists 
are used by GMM and MM procedures. 
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4.7.3.1 GPRS attach procedure for GPRS services 

The GPRS attach procedure is a GMM procedure used by GPRS MSs to IMSI attach for GPRS services. 
The attach type information element shall indicate "GPRS attach". 

4.7.3.1 .1 GPRS attach procedure initiation 

In state GMM-DEREGISTERED, the MS initiates the GPRS attach procedure by sending an ATTACH REQUEST 
message to the network, starts timer T3310 and enters state GMM-REGISTERED-INITIATED. 

The MS capable both UMTS and GSM or only GSM system shall include a valid P-TMSI, if any is available, the P- 
TMSI signature associated with the P-TMSI and the routing area identity associated with the P-TMSI in the ATTACH 
REQUEST message. If there is no valid P-TMSI available, the IMSI shall be included instead of the P-TMSI and P- 
TMSI signature. 

The MS shall also indicate within the DRX parameters whether it supports the split pg cycle option on CCCH. The 
optional support of the split pg cycle on CCCH by the network is indicated in SI13 or PSIl. Split pg cycle on CCCH is 
applied by both the network and the MS when the split pg cycle option is supported by both (see GSM 05.02). 

In UMTS, if the MS wishes to prolong the established RR connection after the GPRS attach procedure, it may set a 
follow-on request pending indicator on. 

4.7.3.1 .2 GMM common procedure initiation 

The network may initiate GMM common procedures, e.g. the GMM identification and GMM authentication and 
ciphering procedure, depending on the received information such as IMSI, CKSN, old RAI, P-TMSI and P-TMSI 

signature. 

4.7.3.1 .3 GPRS attach accepted by the network 

If the GPRS attach request is accepted by the network, an ATTACH ACCEPT message is sent to the MS. 

The P-TMSI reallocation may be part of the GPRS attach procedure. The P-TMSI that shall be allocated is then 
included in the ATTACH ACCEPT message together with the routing area identifier. The network shall, in this case, 
change to state GMM-COMMON-PROCEDURE-INITIATED and shall start timer T3350 as described in section 4.7.6. 
Furthermore, the network may assign a P-TMSI signature for the GMM context which is then also included in the 
ATTACH ACCEPT message. If the LAI or PLMN identity that has been transmitted in the ATTACH ACCEPT 
message is a member of any of the "forbidden" lists, any such entry shall be deleted. Additionally, the network shall 
include the radio priority level to be used by the MS for mobile originated SMS transfer in the ATTACH ACCEPT 
message. 

In UMTS, the network should prolong the RR connection if the mobile station has indicated a follow-on request 
pending in ATTACH REQUEST. The network may also prolong the RR connection without any indication from the 
mobile terminal. 

The MS, receiving an ATTACH ACCEPT message, stores the received routing area identification, stops timer T3310, 
reset the GPRS attach attempt counter, reset the routing area updating attempt counter, enters state GMM- 
REGISTERED and sets the GPRS update status to GUI UPDATED. 

If the message contains a P-TMSI, the MS shall use this P-TMSI as the new temporary identity for GPRS services. In 
this case, an ATTACH COMPLETE message is returned to the network. The MS shall delete its old P-TMSI and shall 
store the new one. If no P-TMSI has been included by the network in the ATTACH ACCEPT message, the old P-TMSI, 
if any available, shall be kept. 

If the message contains a P-TMSI signature, the MS shall use this P-TMSI signature as the new temporary signature for 
the GMM context. The MS shall delete its old P-TMSI signature, if any is available, and shall store the new one. If the 
message contains no P-TMSI signature, the old P-TMSI signature, if available, shall be deleted. 

After that in UMTS, if the mobile station has indicated follow-on request pending and has a CM application request 
pending, it shall send an appropriate message (for example ACTIVATE PDP CONTEXT REQUEST) to the network. 

The network receiving an ATTACH COMPLETE message stops timer T3350, changes to GMM -REGISTERED state 
and considers the P-TMSI sent in the ATTACH ACCEPT message as valid. 



£75/ 



(3G TS 24.008 version 3.2.1 Release 1 999) 88 ETSI TS 1 24 008 V3.2.1 (2000-01 ) 

4.7.3.1 .4 GPRS attach not accepted by the network 

If the attach request cannot be accepted by the network, an ATTACH REJECT message is transferred to the MS. The 
MS receiving the ATTACH REJECT message stops timer T3310 and takes one of the following actions depending 
upon the reject cause: 

# 3 (Illegal MS); or 

# 6 (Illegal ME) 

The MS shall set the GPRS update status to GU3 ROAMING NOT ALLOWED (and shall store it according 
to section 4.L3.2) and shall delete any P-TMSI, P-TMSI signature, RAI and GPRS ciphering key sequence 
number. The new GMM state is GMM-DEREGISTERED. The SIM shall be considered as invalid for GPRS 
services until switching off or the SIM is removed. 

If the MS is IMSI attached via MM procedures, the MS shall in addition set the update status to U3 
ROAMING NOT ALLOWED, shall delete any TMSI, LAI and ciphering key sequence number. The new 
MM state is MM IDLE. The SIM shall be considered as invalid also for non-GPRS services until switching 
off or the SIM is removed. 

# 7 (GPRS services not allowed) 

The MS shall set the GPRS update status to GU3 ROAMING NOT ALLOWED (and shall store it according 
to section 4.L3.2) and shall delete any P-TMSI, P-TMSI signature, RAI and GPRS ciphering key sequence 
number. The SIM shall be considered as invalid for GPRS services until switching off or the SIM is removed. 
The new state is GMM-DEREGISTERED. 

# 8 (GPRS services and non-GPRS services not allowed) 

The MS shall set the GPRS update status to GU3 ROAMING NOT ALLOWED (shall store it according to 
section 4.1.3.2) and shall delete any P-TMSI, P-TMSI signature, RAI and GPRS ciphering key sequence 
number. The new GMM state is GMM-DEREGISTERED. The new MM state is MM IDLE. 

The MS shall set the update status to U3 ROAMING NOT ALLOWED, shall delete any TMSI, LAI and 
ciphering key sequence number. The SIM shall be considered as invalid for GPRS and non-GPRS services 
until switching off or the SIM is removed. 

# 1 1 (PLMN not allowed) 

# 12 (Location area not allowed); or 

#13 (Roaming not allowed in this location area) 

The MS shall delete any RAI, P-TMSI, P-TMSI signature, and GPRS ciphering key sequence number stored, 
shall set the GPRS update status to GU3 ROAMING NOT ALLOWED (and shall store it according to 
section 4.1.3.2), shall reset the GPRS attach attempt counter and shall change to state GMM- 
DEREGISTERED. 

If the MS is IMSI attached via MM procedures, the MS shall in addition set the update status to U3 
ROAMING NOT ALLOWED, shall delete any TMSI, LAI and ciphering key sequence number, and shall 
reset the location update attempt counter. The new MM state is MM IDLE. 

The MS shall store the LAI or the PLMN identity in the appropriate forbidden list, i.e. in the "forbidden 
PLMN list" for cause #1 1, in the list of "forbidden location areas for regional provision of service" for cause 
#12 or in the list of "forbidden location areas for roaming" for cause #13. If cause #1 1 or #13 was received, 
the MS shall perform a PLMN selection instead of a cell selection. 

Other values are considered as abnormal cases. The specification of the MS behaviour in those cases is specified in 
section 4.7.3.1.5. 

4.7.3.1 .5 Abnormal cases in the MS 

The following abnormal cases can be identified: 
a) Access barred because of access class control 



£75/ 



(3G TS 24.008 version 3.2.1 Release 1 999) 89 ETSI TS 1 24 008 V3.2.1 (2000-01 ) 

The GPRS attach procedure shall not be started. The MS stays in the current serving cell and applies normal cell 
reselection process. The GPRS attach procedure is started as soon as possible, i.e. when access is granted or 
because of a cell change. 

b) Lower layer failure before the ATTACH ACCEPT or ATTACH REJECT message is received 
The procedure shall be aborted. The MS shall proceed as described below. 

c) T33 10 time-out 

On the first expiry of the timer, the MS reset and restart timer T3310 and shall retransmit the ATTACH 

REQUEST message. This retransmission is repeated four times, i.e. on the fifth expiry of timer T3310, the 
GPRS attach procedure shall be aborted and the MS shall proceed as described below. 

d) ATTACH REJECT, other causes than those treated in section 4.7.3.1.4 
The MS shall proceed as described below. 

e) Change of cell within the same RA (GSM only) 

If a cell change occurs within the same RA when the MS is in state GMM -REGISTERED-INITIATED, then the 
cell update procedure shall be performed before completion of the attach procedure. 

f) Change of cell into a new routing area 

If a cell change into a new routing area occurs before an ATTACH ACCEPT or ATTACH REJECT message has 
been received, the GPRS attach procedure shall be aborted and re-initiated immediately. If a routing area 
border is crossed when the ATTACH ACCEPT message is received but before an ATTACH COMPLETE 
message is sent, the GPRS attach procedure shall be aborted and the routing area updating procedure shall be 
initiated. If a P-TMSI was allocated during the GPRS attach procedure, this P-TMSI shall be used in the 
routing area updating procedure. If a P-TMSI signature was allocated together with the P-TMSI during the 
GPRS attach procedure, this P-TMSI signature shall be used in the routing area updating procedure. 

g) Mobile originated detach required 

If the MS is in state GMM-REGISTERED-INITIATED, the GPRS attach procedure shall be aborted and the 
GPRS detach procedure shall be performed (see 4.7.4.1). 

h) Procedure collision 

If the MS receives a DETACH REQUEST message from the network in state GMM-REGISTERED- 
INITIATED, the GPRS detach procedure shall be progressed and the GPRS attach procedure shall be 
aborted. If the cause IE, in the DETACH REQUEST message, indicated a "reattach request", the GPRS 
attach procedure shall be progressed and the DETACH REQUEST message shall be ignored. 

In cases b, c and d the MS shall proceed as follows. Timer T3310 shall be stopped if still running. The GPRS attach 
attempt counter shall be incremented. 

If the GPRS attach attempt counter is less than 5: 

- timer T33 11 is started and the state is changed to GMM-DEREGISTERED. ATTEMPTING-TO-ATTACH. 

If the GPRS attach attempt counter is greater than or equal to 5: 

the MS shall delete any RAI, P-TMSI, P-TMSI signature, and GPRS ciphering key sequence number, shall set 
the GPRS update status to GU2 NOT UPDATED, shall start timer T3302. The state is changed to GMM- 
DEREGISTERED..ATTEMPTING-TO-ATTACH or optionally to GMM-DEREGISTERED.PLMN-SEARCH 

(see 4.2.4.1.2). 

In UMTS, in case c the MS shall release the PS signaling connection and in case d the network shall release the 
PS signaling connection for this MS (see TS 25.331). 

4.7.3.1 .6 Abnormal cases on the network side 

The following abnormal cases can be identified: 
a) Lower layer failure 
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If a low layer failure occurs before the message ATTACH COMPLETE has been received from the MS and a new 
P-TMSI (or a new P-TMSI and a new P-TMSI signature) has been assigned, the network shall consider both the 
old and new P-TMSI each with its corresponding P-TMSI-signature as valid until the old P-TMSI can be 
considered as invalid by the network (see section 4.7.1.5) and shall not resent the message ATTACH ACCEPT. 
During this period the network may: 

- use the identification procedure followed by a P-TMSI reallocation procedure if the old P-TMSI is used by 
the MS in a subsequent message. 

b) Protocol error 

If the ATTACH REQUEST message is received with a protocol error, the network shall return an ATTACH 
REJECT message with one of the following reject causes: 

#96: Mandatory information element error; 

#99: Information element non-existent or not implemented; 

#100: Conditional IE error; 

#111: Protocol error, unspecified. 

c) T3350 time-out 

On the first expiry of the timer, the network shall retransmit the ATTACH ACCEPT message and shall reset and 
restart timer T3350. 

This retransmission is repeated four times, i.e. on the fifth expiry of timer T3350, the GPRS attach procedure shall 
be aborted. If a new P-TMSI or a new P-TMSI together with a new P-TMSI signature were allocated in the 
ATTACH ACCEPT message, the network shall consider both the old and new P-TMSI each together with the 
corresponding P-TMSI signatures as valid until the old P-TMSI can be considered as invalid by the network (see 
section 4.7.1.5). During this period the network acts as specified for case a. 

d. 1 ) ATTACH REQUEST received 

If one or more of the information elements in the ATTACH REQUEST message differ from the ones received 
within the previous ATTACH REQUEST message, the previously initiated GPRS attach procedure shall be 
aborted and the new GPRS attach procedure shall be progressed, or 

If no information element differ, then the ATTACH ACCEPT message shall be resent. 

d.2) More than one ATTACH REQUEST received and no ATTACH ACCEPT or ATTACH REJECT message 
has been sent 

If one or more of the information elements in the ATTACH REQUEST message differs from the ones 
received within the previous ATTACH REQUEST message, the previously initiated GPRS attach procedure 
shall be aborted and the new GPRS attach procedure shall be progressed ; 

If the information elements do not differ, then the network shall continue with the previous attach procedure 
and shall not treat any further this ATTACH REQUEST message. 

e) ATTACH REQUEST received in state GMM-REGISTERED 

If an ATTACH REQUEST message is received in state GMM-REGISTERED the network may initiate the GMM 
common procedures; if it turned out that the ATTACH REQUEST message was send by an MS that has already 
been attached, the GMM context and PDP contexts, if any, are deleted and the new ATTACH REQUEST is 
progressed. 

f) ROUTING AREA UPDATE REQUEST message received before ATTACH COMPLETE message. 

Timer T3350 shall be stopped. The allocated P-TMSI shall be considered as valid and the routing area updating 
procedure shall be progressed as described in section 4.7.5. 
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Figure 4.7.3/1 TS 24.008: GPRS attach procedure and combined GPRS attach procedure 



4.7.3.2 



Combined GPRS attach procedure for GPRS and non-GPRS services 



The combined GPRS attach procedure is a GMM procedure used by a GPRS MS operating in MS operation modes A or 
B for IMSI attach for GPRS and non-GPRS services if the network operates in network operation mode I:. 

If a GPRS MS operating in MS operation modes A or B is already attached for non-GPRS services by use of the MM 
specific IMSI attach procedure, but additionally wishes to perform an IMSI attach for GPRS services, the combined 
GPRS attach procedure shall also be used. 

The attach type information element shall indicate "combined GPRS attach". In this case, the messages ATTACH 
ACCEPT, ATTACH COMPLETE, and ATTACH REJECT used by the combined GPRS attach procedure carry 
information for both the GPRS and the non-GPRS services. 



4.7.3.2.1 



Combined GPRS attach procedure initiation 



If the MS is in GMM state GMM-DEREGISTERED and in MM state MM IDLE, the MS initiates the combined GPRS 
attach procedure by sending an ATTACH REQUEST message to the network, starts timer T3310 and enters state 
GMM-REGISTERED-INITIATED and MM LOCATION UPDATING PENDING. 

The MS shall include a valid P-TMSI, if available, the P-TMSI signature associated with the P-TMSI and the routing 
area identity associated with the P-TMSI in the ATTACH REQUEST message. If there is no valid P-TMSI available, 
the IMSI shall be included instead of the P-TMSI and P-TMSI signature. Furthermore the MS shall include the TMSI 
status IE if no valid TMSI is available. 

In UMTS, if the MS wishes to prolong the established RR connection after the GPRS attach, it may set a follow-on 
request pending indicator on. 



4.7.3.2.2 



GMM Common procedure initiation 



The network may initiate GMM common procedures, e.g. the GMM identification and GMM authentication and 
ciphering procedure, depending on the received information such as IMSI, CKSN, old RAI, P-TMSI and P-TMSI 
signature. 



4.7.3.2.3 



Combined GPRS attach accepted by the networl< 



Depending on the value of the attach result IE received in the ATTACH ACCEPT message, two different cases can be 
distinguished: 
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Case 1) The attach resuh IE value indicates "combined GPRS attach": IMSI attach for GPRS and non-GPRS 
services have been successful. 

Case 2) The attach result IE value indicates "GPRS only": IMSI attach for GPRS services has been successful but 
IMSI attach for non-GPRS services has not been successful. 

4.7.3.2.3.1 Combined attach successful for GPRS and non-GPRS services 

The description for IMSI attach for GPRS services as specified in section 4.7.3.1.3 shall be followed. In addition, the 
following description for IMSI attach for non-GPRS services applies. 

The TMSI reallocation may be part of the combined GPRS attach procedure. The TMSI allocated is then included in the 
ATTACH ACCEPT message together with the location area identification (LAI). The network shall, in this case, 
change to state GMM-COMMON-PROCEDURE-INITIATED and shall start timer T3350 as described in section 4.7.6. 

The MS, receiving an ATTACH ACCEPT message, stores the received location area identification, stops timer T3310, 
reset the location update attempt counter and sets the update status to Ul UPDATED. If the message contains an IMSI, 
the mobile station is not allocated any TMSI, and shall delete any TMSI accordingly. If the message contains a TMSI, 
the MS shall use this TMSI as the new temporary identity. The MS shall delete its old TMSI and shall store the new 
TMSI. In this case, an ATTACH COMPLETE message is returned to the network. If neither a TMSI nor an IMSI has 
been included by the network in the ATTACH ACCEPT message, the old TMSI, if any available, shall be kept. The 
new MM state is MM IDLE, the new GMM state is GMM-REGISTERED. 

Any timer used for triggering the location update procedure (e.g T3211, T3212) shall be stopped if running. 

The network receiving an ATTACH COMPLETE message stops timer T3350, changes to state GMM-REGISTERED 
and considers the new TMSI as valid. 

4.7.3.2.3.2 Combined attacin successful for GPRS services only 

The description for IMSI attach for GPRS services as specified in section 4.7.3.1.3 shall be followed. In addition, the 
following description for IMSI attach for non-GPRS services applies. 

The MS receiving the ATTACH ACCEPT message takes one of the following actions depending on the reject cause: 

# 2 (IMSI unknown in HLR) 

The MS shall set the update status to U3 ROAMING NOT ALLOWED and shall delete any TMSI, LAI and 
ciphering key sequence number. The new MM state is MM IDLE. The SIM shall be considered as invalid for 
non-GPRS services until switching off or the SIM is removed. 

#16 (MSC temporarily not reachable) 

#17 (Network failure); or 

# 22 (Congestion) 

The MS shall change to state GMM-REGISTERED.ATTEMPTING-TO-UPDATE-MM. Timer T3310 shall be 
stopped if still running. The routing area updating attempt counter shall be incremented. 

If the routing area updating attempt counter is less than 5, and the stored RAI is equal to the RAI of the current 
serving cell and the GMM update status is equal to GUI UPDATED: 

- the MS shall keep the GMM update status GUI UPDATED and changes state to GMM- 
REGISTERED. ATTEMPTING-TO-UPDATE-MM. The MS shall start timer T3311. When timer T3311 
expires the combined routing area update procedure indicating "combined RA/LA updating with IMSI 
attach" is triggered again. 

If the routing area updating attempt counter is greater than or equal to 5: 

- the MS shall start timer T3302 and shall change to state GMM-REGISTERED.ATTEMPTING-TO- 
UPDATE-MM; 

a GPRS MS operating in MS operation mode A shall then proceed with appropriate MM specific procedure; a 
GPRS MS operating in MS operation mode B may then proceed with appropriate MM specific procedures. The MM 
sublayer shall act as in network operation mode II as long as the combined GMM procedures are not successful and no 
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new RA is entered. The new MM state is IDLE. Other values are considered as abnormal cases. The combined attach 
procedure shall be considered as failed for GPRS and non-GPRS services. The behaviour of the MS in those cases is 
specified in section 4.7.3.2.5. 

4.7.3.2.4 Combined GPRS attach not accepted by the network 

If the attach request can neither be accepted by the network for GPRS nor for non-GPRS services, an ATTACH 
REJECT message is transferred to the MS. The MS receiving the ATTACH REJECT message stops timer T3310 and 
takes one of the following actions depending upon the reject cause: 

# 3 (Illegal MS); 

# 6 (Illegal ME); or 

# 8 (GPRS services and non-GPRS services not allowed) 

The MS shall set the GPRS update status to GU3 ROAMING NOT ALLOWED (shall store it according to section 
4.1.3.2) and shall delete any P-TMSI, P-TMSI signature, RAI and GPRS ciphering key sequence number. The 
new GMM state is GMM-DEREGISTERED. The new MM state is MM IDLE. 

The MS shall set the update status to U3 ROAMING NOT ALLOWED, shall delete any TMSI, LAI and ciphering 
key sequence number. The SIM shall be considered as invalid for GPRS and non-GPRS services until switching 
off or the SIM is removed. 

# 7 (GPRS services not allowed) 

The MS shall set the GPRS update status to GU3 ROAMING NOT ALLOWED (and shall store it according to 
section 4.1.3.2) and shall delete any P-TMSI, P-TMSI signature, RAI and GPRS ciphering key sequence 
number. The SIM shall be considered as invalid for GPRS services until switching off or the SIM is removed. 
The new GMM state is GMM-DEREGISTERED; the MM state is MM IDLE. A GPRS MS operating in MS 
operation mode A shall then perform an IMSI attach for non-GPRS services by use of the MM IMSI attach 
procedure; a GPRS MS operating in MS operation mode B shall then perform an IMSI attach for non-GPRS 
services by use of the MM IMSI attach procedure. 

# 1 1 (PLMN not allowed); 

# 12 (Location area not allowed); or 

#13 (Roaming not allowed in this location area). 

The MS shall delete any RAI, P-TMSI, P-TMSI signature and GPRS ciphering key sequence number stored, shall 
set the GPRS update status to GU3 ROAMING NOT ALLOWED (and shall store it according to section 
4.1.3.2), shall reset the routing area updating attempt counter and reset the GPRS attach attempt counter and 
changes to state GMM-DEREGISTERED. The MS shall set the update status to U3 ROAMING NOT 
ALLOWED, reset the location update attempt counter and shall delete any TMSI, LAI and ciphering key 
sequence number. The new MM state is MM IDLE. 

The MS shall store the LAI or the PLMN identity in the appropriate forbidden list, i.e. in the "forbidden PLMN list" 
for cause #11, in the list of "forbidden location areas for regional provision of service" for cause #12 or in the list 
of "forbidden location areas for roaming" for cause #13. If cause #1 1 or #13 was received, the MS shall perform 
a PLMN selection instead of a cell selection. 

Other values are considered as abnormal cases. The specification of the MS behaviour in those cases is specified in 
section 4.7.3.2.5. 

4.7.3.2.5 Abnormal cases in the MS 

The abnormal cases specified in section 4.7.3.1.5 apply with the following modification: 

If the GPRS attach attempt counter is less than 5, the MM state remains MM LOCATION UPDATING PENDING. 

If the GPRS attach attempt counter is incremented according to section 4.7.3.1.5 the next actions depend on the 
Location Area Identities (stored on SIM and the one of the current serving cell) and the value of the attach attempt 
counter: 
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- if the update status is Ul UPDATED, and the stored LAI is equal to the one of the current serving cell and the 
attach attempt counter is smaller than 5, then the mobile station shall keep the update status to Ul UPDATED, 
the new MM state is MM IDLE substate NORMAL SERVICE; or 

- if the update status is different from Ul UPDATED, or the stored LAI is different from the one of the current 
serving cell, or the attach attempt counter is greater or equal to 5, then the mobile station shall delete any LAI, 
TMSI, ciphering key sequence number stored in the SIM and set the update status to U2 NOT UPDATED. The 
new MM state is MM IDLE substate ATTEMPTING TO UPDATE. 

4.7.3.2.6 Abnormal cases on the network side 

The abnormal cases specified in section 4.7.3. L6 apply with the exceptions for cases a and c in which in addition to the 
P-TMSI and P-TMSI signature the old TMSI shall be considered occupied until the new TMSI is used by the MS in a 
subsequent message. 



4.7.4 GPRS detach procedure 

The GPRS detach procedure is used: 

to detach the IMSI for GPRS services only. Independent of the network operation mode, this procedure is used 
by all kind of GPRS MSs; 

as a combined GPRS detach procedure used by GPRS MSs operating in MS operation mode A or B to detach the 
IMSI for GPRS and non-GPRS services or for non-GPRS services only, if the network operates in network 
operation mode I; or 

in the case of a network failure condition to indicate to the MS that a re-attach with successive activation of 
previously active PDP contexts shall be performed. 

After completion of a GPRS detach procedure or combined GPRS detach procedure for GPRS and non-GPRS services 
the GMM context is released. 

The GPRS detach procedure shall be invoked by the MS if the MS is switched off, the SIM card is removed from the 
MS or if the GPRS or non-GPRS capability of the MS is disabled. The procedure may be invoked by the network to 
detach the IMSI for GPRS services. The GPRS detach procedure causes the MS to be marked as inactive in the network 
for GPRS services, non-GPRS services or both services. 

In GSM, if the GPRS detach procedure is performed, the PDP contexts are deactivated locally without peer to peer 
signalling between the SM and LLC entities in the MS and the network. 

In UMTS, if the GPRS detach procedure is performed, the PDP contexts are deactivated locally without peer to peer 
signalling between the SM entities in the MS and the network. 

4.7.4.1 MS initiated GPRS detach procedure 

4.7.4.1 .1 MS initiated GPRS detach procedure initiation 

The GPRS detach procedure is initiated by the MS by sending a DETACH REQUEST message. The detach type 
information element may indicate "GPRS detach with switching off, "GPRS detach without switching off, "IMSI 
detach", "GPRS/IMSI detach with switching off or "GPRS/IMSI detach without switching off. 

The MS shall include the P-TMSI in the DETACH REQUEST message. The MS shall also include a valid P-TMSI 
signature, if available. 

If the MS is not switched off, timer T3321 shall be started after the DETACH REQUEST message has been sent. If the 
detach type information element value indicates "IMSI Detach" the MS shall enter GMM-REGISTERED.IMSI- 
DETACHJNITIATED, otherwise the MS shall enter the state GMM-DEREGISTERED-INITIATED. If the detach 
type information element value indicates "IMSI Detach" or "GPRS/IMSI Detach", state MM IMSI DETACH 
PENDING is entered 

If the detach type information element value indicates "GPRS detach without switching off " and the MS is attached for 
GPRS and non-GPRS services and the network operates in network operation mode I, then if in the MS the timer T3212 
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is not already running, the timer T3212 shall be set to its initial value and restarted after the DETACH REQUEST 
message has been sent. 

4.7.4.1 .2 MS initiated GPRS detach procedure completion for GPRS services only 

When the DETACH REQUEST message is received by the network, the network shall send a DETACH ACCEPT 
message to the MS, if the detach cause IE value indicates that the detach request has not been sent due to switching off. 
If switching off was indicated, the procedure is completed when the network receives the DETACH REQUEST 
message. The network and the MS shall deactivate the PDP contexts and deactivate the logical link(s), if any. 

The MS is marked as inactive in the network for GPRS services; state GMM-DEREGISTERED is entered in the MS 
and the network. 

In UMTS, if the detach has been sent due to switching off, then the network shall release the resources in the lower 
layers for this MS (see TS 25.331). 

NOTE: When the DETACH REQUEST message is received by the network, and if the detach cause IE value 

indicates that the detach is not due to power off, the authentication and ciphering procedure as well as the 
identification procedure may be performed. 

4.7.4.1 .3 MS initiated combined GPRS detach procedure completion 

When the DETACH REQUEST message is received by the network, a DETACH ACCEPT message shall be sent to the 
MS, if the detach cause IE value indicates that the detach request has not been sent due to switching off. Depending on 
the value of the detach type IE the following applies: 

GPRS/IMSI detach: 

The MS is marked as inactive in the network for GPRS and for non-GPRS services. The network and the MS shall 
deactivate the PDP contexts and deactivate the logical link(s), if any. The States GMM-DEREGISTERED and MM 
NULL are entered in both the MS and the network. 

In UMTS, if the detach has been sent due to switching off, then the network shall release the resources in the lower 
layers for this MS (see TS 25.331). 

IMSI detach: 

The MS is marked as inactive in the network for non-GPRS services. State MM NULL is entered in the MS and the 

network. 

4.7.4.1 .4 Abnormal cases in the MS 

The following abnormal cases can be identified: 

a) T3321 time-out 

On the first expiry of the timer, the MS shall retransmit the DETACH REQUEST message and shall reset and restart 
timer T3321. This retransmission is repeated four times, i.e. on the fifth expiry of timer T3321, the GPRS detach 
procedure shall be aborted, the MS shall change to state: 

- MM-NULL if "IMSI detach" was requested; 

- GMM-REGISTERED.NORMAL-SERVICE if "IMSI Detach" was requested- GMM-DEREGISTERED if 
"GPRS detach" was requested; 

- GMM-DEREGISTERED and MM-NULL if "GPRS/IMSI" detach was requested. 

b) Lower layer failure before reception of DETACH ACCEPT message 
The detach procedure is aborted and the MS shall change to state: 

- MM-NULL if "IMSI detach" was requested; 

- GMM-REGISTERED.NORMAL-SERVICE if "IMSI Detach" was requested 

- GMM-DEREGISTERED if "GPRS detach" was requested; 

- GMM-DEREGISTERED and MM-NULL if "IMSI/GPRS" detach was requested. 
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c) Detach procedure collision 

If the MS receives a DETACH REQUEST message before the MS initiated GPRS detach procedure has been 
completed, a DETACH ACCEPT message shall be sent to the network. 

d) Detach and GMM common procedure collision 

GPRS detach containing cause "power off": 

If the MS receives a message used in a GMM common procedure before the GPRS detach procedure has 
been completed, this message shall be ignored and the GPRS detach procedure shall continue. 

GPRS detach containing other causes than "power off 

- If the MS receives a P-TMSI REALLOCATION COMMAND, a GMM STATUS, or a GMM 
INFORMATION message before the GPRS detach procedure has been completed, this message shall be 
ignored and the GPRS detach procedure shall continue. 

- If the MS receives an AUTHENTICATION AND CIPHERING REQUEST or IDENTITY REQUEST 

message, before the GPRS detach procedure has been completed, the MS shall respond to it as described in 
section 4.7.7 and 4.7.8 respectively. 

e) Change of cell within the same RA (GSM only) 

If a cell change occurs within the same RA before a DETACH ACCEPT message has been received, then the 
cell update procedure shall be performed before completion of the detach procedure. 

f) Change of cell into a new routing area. 

If a cell change into a new routing area occurs before a DETACH ACCEPT message has been received, the GPRS 
detach procedure shall be aborted and re-initiated after successfully performing a routing area updating 
procedure. 
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Figure 4.7.4/1 TS 24.008: MS initiated GPRS detach procedure 



4.7.4.2 



Network initiated GPRS detach procedure 



4.7.4.2.1 



Network initiated GPRS detach procedure initiation 



The network initiates the GPRS detach procedure by sending a DETACH REQUEST message to the MS. The network 
shall start timer T3322, shall deactivate the PDP contexts and deactivate the logical link(s), if any, and shall change to 
state GMM-DEREGISTERED-INITIATED. The DETACH REQUEST message shall include a detach type IE. In 
addition, the network may include a cause IE to specify the reason for the detach request. 

If the detach type IE indicates "re-attach required", the MS shall perform a new attach procedure. The MS should also 
activate PDP context(s) to replace any previously active PDP contexts. 
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NOTE: In some cases, user interaction may be required and then the MS cannot activate the PDP context(s) 
automatically. 

4.7.4.2.2 Network initiated GPRS detach procedure completion by the MS 

When receiving the DETACH REQUEST message and the detach type IE indicates "re-attach not required" or "re- 
attach required", the MS shall deactivate the PDP contexts and deactivate the logical link(s), if any. The MS shall then 
send a DETACH ACCEPT message to the network and shall change state to GMM-DEREGISTERED. The MS shall, 
after the completion of the GPRS detach procedure, initiate a GPRS attach procedure if indicated by the network in the 
detach type IE. 

A GPRS MS operating in MS operation mode A or B in network operation mode I, which receives an DETACH 
REQUEST message with detach type indicating "re-attach required" or "re-attach not required" and no cause code, is 
only detached for GPRS services in the network. 

When receiving the DETACH REQUEST message and the detach type IE indicates "IMSI detach", the MS shall send a 
DETACH ACCEPT message to the network. 

If the detach type information element value indicates "re-attach required" or "re-attach not required" and the MS is 
attached for GPRS and non-GPRS services and the network operates in network operation mode I, then if in the MS the 
timer T3212 is not already running, the timer T3212 shall be set to its initial value and restarted. 

Depending on the received cause code, the MS shall act as follows: 

# 2 (IMSI unknown in HLR) 

The MS shall set the update status to U3 ROAMING NOT ALLOWED and shall delete any TMSI, LAI and 
ciphering key sequence number. The new MM state is MM IDLE. The SIM shall be considered as invalid for 
non-GPRS services until switching off or the SIM is removed. 

A GPRS MS operating in MS operation mode A or B in network operation mode I, is still IMSI attached for 
GPRS services in the network. 

# 3 (Illegal MS); or 

# 6 (Illegal ME) 

The MS shall set the GPRS update status to GU3 ROAMING NOT ALLOWED (and shall store it according to 
section 4.1.3.2) and shall delete any P-TMSI, P-TMSI signature, RAI and GPRS ciphering key sequence 
number. The new GMM state is GMM-DEREGISTERED. The SIM shall be considered as invahd for GPRS 
services until switching off or the SIM is removed. 

A GPRS MS operating in MS operation mode A or B shall in addition set the update status to U3 ROAMING 
NOT ALLOWED, shall delete any TMSI, LAI and ciphering key sequence number. The new MM state is MM 
idle. The SIM shall be considered as invalid also for non-GPRS services until switching off or the SIM is 
removed. 

# 7 (GPRS services not allowed) 

The MS shall set the GPRS update status to GU3 ROAMING NOT ALLOWED (and shall store it according to 
section 4.1.3.2) and shall delete any P-TMSI, P-TMSI signature, RAI and GPRS ciphering key sequence 
number. The SIM shall be considered as invalid for GPRS services until switching off or the SIM is removed. 
The new state is GMM-DEREGISTERED. 

A GPRS MS operating in MS operation mode A or B in network operation mode I, is still IMSI attached for CS 
services in the network. 

# 8 (GPRS services and non-GPRS services not allowed) 

The MS shall set the GPRS update status to GU3 ROAMING NOT ALLOWED and the update status to U3 
ROAMING NOT ALLOWED (and shall store it according to section 4.1.3.2). Furthermore, it shall delete any P- 
TMSI, P-TMSI signature, TMSI, RAI, LAI, ciphering key sequence number and GPRS ciphering key sequence 
number and shall consider the SIM as invalid for GPRS and non-GPRS services until switching off or the SIM is 
removed. 

# 1 1 (PLMN not allowed); 



£75/ 



(3G TS 24.008 version 3.2.1 Release 1 999) 98 ETSI TS 1 24 008 V3.2.1 (2000-01 ) 

# 12 (Location area not allowed); or 

#13 (Roaming not allowed in this location area) 

The MS shall delete any RAl or LAI, P-TMSl, P-TMSI signature and GPRS ciphering key sequence number, 
shall set the GPRS update status to GU3 ROAMING NOT ALLOWED (and shall store it according to section 
4.1.3.2). 

A GPRS MS operating in MS operation mode A or B shall in addition set the update status to U3 ROAMING 
NOT ALLOWED and shall delete any TMSl, LAI and ciphering key sequence number. The new MM state is 
MM IDLE. 

The MS shall store the LAI or the PLMN identity in the appropriate forbidden list, i.e. in the "forbidden PLMN 
list" for cause #1 1, in the list of "forbidden location areas for regional provision of service" for cause #12 or in 
the list of "forbidden location areas for roaming" for cause #13. If #1 lor #13 was received, the MS shall 
perform a PLMN selection instead of a cell selection. 

Other cause values shall not impact the update status. Further actions of the MS are implementation dependent. 

4.7.4.2.3 Network initiated GPRS detach procedure completion by the networl< 

The network shall, upon receipt of the DETACH ACCEPT message, stop timer T3322 and shall change state to GMM- 
DEREGISTERED. 

4.7.4.2.4 Abnormal cases on the network side 

The following abnormal cases can be identified: 

a) T3322 time-out 

On the first expiry of the timer, the network shall retransmit the DETACH REQUEST message and shall start timer 
T3322. This retransmission is repeated four times, i.e. on the fifth expiry of timer T3322, the GPRS detach 
procedure shall be aborted and the network changes to state GMM-DEREGISTERED. 

b) Low layer failure 

The GPRS detach procedure is aborted and the network changes to state GMM-DEREGISTERED. 

c) GPRS detach procedure collision 

If the network receives a DETACH REQUEST message with "switching off indicated, before the network initiated 
GPRS detach procedure has been completed, both procedures shall be considered completed. 

If the network receives a DETACH REQUEST message without "switching off indicated, before the network 
initiated GPRS detach procedure has been completed, the network shall send a DETACH ACCEPT message to 
the MS. 

d) GPRS detach and GPRS attach procedure collision 

If the network receives an ATTACH REQUEST message before the network initiated GPRS detach procedure has 
been completed, the network shall ignore the ATTACH REQUEST message, except when the detach type IE 
value, sent in the DETACH REQUEST message, indicated that the MS shall perform a GPRS attach procedure. 
In this case, the detach procedure is aborted and the GPRS attach procedure shall be progressed after the PDP 
contexts have been deleted. 

e) GPRS detach and routing area updating procedure collision 

GPRS detach containing detach type "re-attach required" or "re-attach not required": 

If the network receives a ROUTING AREA UPDATE REQUEST message before the network initiated GPRS 
detach procedure has been completed, the detach procedure shall be progressed, i.e. the ROUTING AREA 
UPDATE REQUEST message shall be ignored. 

GPRS detach containing detach type "IMSI detach": 
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If the network receives a ROUTING AREA UPDATE REQUEST message before the network initiated GPRS 
detach procedure has been completed, the network shall abort the detach procedure and shall progress the routing 
area update procedure. 

f) GPRS detach and service request procedure collision 

If the network receives a SERVICE REQUEST message before the network initiated GPRS detach procedure 
has been completed, the network shall ignore the SERVICE REQUEST message. 
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Figure 4.7.4/2 TS 24.008: Network initiated GPRS detach procedure 

4.7.5 Routing area updating procedure 

This procedure is used for: 

normal routing area updating to update the registration of the actual routing area of an MS in the network. This 
procedure is used by GPRS MSs in MS operation mode C and by GPRS MSs in MS operation modes A or B that 
are IMSI attached for GPRS and non-GPRS services if the network operates in network operation mode II or III; 

combined routing area updating to update the registration of the actual routing and location area of an MS in the 
network. This procedure is used by GPRS MSs in MS operation modes A or B that are IMSI attached for GPRS 
and non-GPRS services provided that the network operates in network operation mode I; or 

- periodic routing area updating. This procedure is used by GPRS MSs in MS operation mode C and by GPRS 
MSs in MS operation modes A or B that are IMSI attached for GPRS or for GPRS and non-GPRS services 
independent of the network operation mode; 

IMSI attach for non-GPRS services when the MS is IMSI attached for GPRS services. This procedure is used by 
GPRS MSs in MS operation modes A or B, if the network operates in network operation mode I. 

in GSM, resuming GPRS services when the RR sublayer indicated a resumption failure after dedicated mode 
was left, see GSM 04.18. 

UMTS to GSM and for GSM to UMTS intersystem change. Four cases are distinguished: 

- An MS that uses the GSM radio interface in an RA and moves to a new RA in UMTS or an MS that uses the 
UMTS radio interface in an RA and moves to a new RA in GSM, shall initiate the normal or combined routing 
area update procedure, as specified in section 4.7.1.6.- An MS that uses the GSM radio interface in a cell and 
moves to a new UMTS cell within the same RA or an MS that uses the UMTS radio interface in a cell and 
moves to a new GSM cell within the same RA, shall selectively initiate the routing area update procedure as 
specified in section 4.7.1.6. 

Section 4.7.5.1 describes the routing area updating procedures for updating the routing area only. The combined routing 
area updating procedure used to update both the routing and location area is described in section 4.7.5.2. 

The routing area updating procedure is always initiated by the MS. It is only invoked in state GMM-REGISTERED. 

To limit the number of subsequently rejected routing area update attempts, a routing area updating attempt counter is 
introduced. The routing area updating attempt counter shall be incremented as specified in section 4.7.5.1.5. Depending 
on the value of the routing area updating attempt counter, specific actions shall be performed. The routing area updating 
attempt counter shall be reset when: 

a GPRS attach procedure is successfully completed; or 

a routing area updating procedure is successfully completed; 
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and additionally when the MS is in substate ATTEMPTING-TO-UPDATE: 

a new routing area is entered; 

expiry of timer T3302; or 

at request from registration function. 

The mobile equipment shall contain a list of "forbidden location areas for roaming", as well as a list of "forbidden 
location areas for regional provision of service". The handling of these lists is described in section 4.4. 1 . 

In, GSM, user data transmission in the MS shall be suspended during the routing area updating procedure; user data 
reception shall be possible. User data transmission in the network shall be suspended during the routing area updating 
procedure, if a new P-TMSI is assigned. 

In UMTS, user data transmission and reception in the MS shall not be suspended during the routing area updating 
procedure. User data transmission in the network shall not be suspended during the routing area updating procedure. 

4.7.5.1 Normal and periodic routing area updating procedure 

Periodic routing area updating is used to periodically notify the availability of the MS to the network. The value of the 
update type IE in the ROUTING AREA UPDATE REQUEST message shall indicate "periodic updating". The 
procedure is controlled in the MS by timer T3312. When timer T3312 expires, the periodic routing area updating 
procedure is started. Start and reset of timer T3312 is described in section 4.7.2.2. 

In GSM, the normal routing area updating procedure is initiated when the MS detects a change of the routing area in 
state GMM-REGISTERED, or when the MS determines that GPRS resumption shall be performed. The ROUTING 
AREA UPDATE REQUEST message shall always be the first data sent by the MS when a routing area border is 
crossed. The routing area identification is broadcast on the broadcast channel(s). 

In UMTS, the normal routing area updating procedure is initiated when the MS detects a change of the routing area in 
state GMM-REGISTERED. The ROUTING AREA UPDATE REQUEST message shall always be the first GMM 
message sent by the MS when a routing area border is crossed. 

A normal routing area updating shall abort any ongoing GMM procedure. Aborted GMM procedures may be repeated 
after the normal routing area updating procedure has been successfully performed. The value of the update type IE 
included in the message shall indicate "normal routing area updating". 

4.7.5.1 .1 Normal and periodic routing area updating procedure initiation 

To initiate the normal routing area updating procedure, the MS sends the message ROUTING AREA UPDATE 
REQUEST to the network, starts timer T3330 and changes to state GMM-ROUTING-AREA-UPDATING- 
INITIATED. The message ROUTING AREA UPDATE REQUEST shall contain the P-TMSI signature when received 
within a previous ATTACH ACCEPT or ROUTING AREA UPDATE ACCEPT message. 

In UMTS, if the MS wishes to prolong the established RR connection after the normal routing area updating procedure, 
it may set a follow-on request pending indicator on. 

4.7.5.1 .2 GMM Common procedure initiation 

The network may initiate GMM common procedures, e.g. the GMM authentication and ciphering procedure. 

4.7.5.1 .3 Normal and periodic routing area updating procedure accepted by the network 

If the routing area updating request has been accepted by the network, a ROUTING AREA UPDATE ACCEPT 
message shall be sent to the MS. The network may assign a new P-TMSI and/or a new P-TMSI signature for the MS. If 
a new P-TMSI and/or P-TMSI signature have been assigned to the MS, it/they shall be included in the ROUTING 
AREA UPDATE ACCEPT message together with the routing area identification. The network shall change to state 
GMM-COMMON-PROCEDURE-INITIATED and shall start the supervision timer T3350 as described in section 4.7.6. 

If the LAI or PLMN identity contained in the ROUTING AREA UPDATE ACCEPT message is a member of any of 
the "forbidden" lists then any such entry shall be deleted. 
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In UMTS, the network should prolong the RR connection if the mobile station has indicated a follow-on request 
pending in ROUTING AREA UPDATE REQUEST. The network may also prolong the RR connection without any 
indication from the mobile terminal. 

Upon receipt of a ROUTING AREA UPDATE ACCEPT message, the MS stores the received routing area 
identification, stops timer T3330, shall reset the routing area updating attempt counter and sets the GPRS update status 
to GUI UPDATED. If the message contains a P-TMSI, the MS shall use this P-TMSI as new temporary identity for 
GPRS services and shall store the new P-TMSI. If no P-TMSI was included by the network in the ROUTING AREA 
UPDATING ACCEPT message, the old P-TMSI shall be kept. Furthermore, the MS shall store the P-TMSI signature if 
received in the ROUTING AREA UPDATING ACCEPT message. If no P-TMSI signature was included in the 
message, the old P-TMSI signature, if available, shall be deleted. 

A ROUTING AREA UPDATE COMPLETE message shall be returned to the network if the ROUTING AREA 
UPDATE ACCEPT message contained: 

- a P-TMSI; and/or 

- Receive N-PDU Numbers (see 04.65 [78] and TS 25.322). 

In this case the Receive N-PDU Numbers values valid in the MS, shall be included in the ROUTING AREA UPDATE 
COMPLETE message. 

NOTE: In UMTS, after a routing area updating procedure, the mobile station can initiate Service Request 
procedure to request the resource reservation for the active PDP contexts if the resources have been 
released by the network or send upper layer message (e.g. ACTIVATE PDP CONTEXT REQUEST) to 
the network via the existing PS signaling connection. 

After that in UMTS, if the mobile station has indicated follow-on request pending and has a CM application request 
pending, it shall send an appropriate message (for example ACTIVATE PDP CONTEXT REQUEST) to the network. 

4.7.5.1 .4 Normal and periodic routing area updating procedure not accepted by the 

network 

If the routing area updating cannot be accepted, the network sends a ROUTING AREA UPDATE REJECT message to 
the MS. An MS that receives a ROUTING AREA UPDATE REJECT message stops timer T3330 . The MS shall then 
take different actions depending on the received reject cause value: 

# 3 (Illegal MS); or 

# 6 (Illegal ME) 

The MS shall set the GPRS update status to GU3 ROAMING NOT ALLOWED (and shall store it according to 
section 4.1.3.2) and enter the state GMM-DEREGISTERED. Furthermore, it shall delete any P-TMSI, P-TMSI 
signature, RAI and GPRS ciphering key sequence number and shall consider the SIM as invaUd for GPRS 
services until switching off or the SIM is removed. 

If the MS is IMSI attached via MM procedures, the MS shall in addition set the update status to U3 ROAMING 
NOT ALLOWED, shall delete any TMSI, LAI and ciphering key sequence number. The new MM state is MM 
IDLE. The SIM shall be considered as invalid also for non-GPRS services until switching off or the SIM is 
removed. 

# 7 (GPRS services not allowed) 

The MS shall set the GPRS update status to GU3 ROAMING NOT ALLOWED (and shall store it according to 
section 4.1.3.2.9) and shall delete any P-TMSI, P-TMSI signature, RAI and GPRS ciphering key sequence 
number. The SIM shall be considered as invalid for GPRS services until switching off or the SIM is removed. 
The new state is GMM-DEREGISTERED. 

# 9 (MS identity cannot be derived by the network) 

The MS shall set the GPRS update status to GU2 NOT UPDATED (and shall store it according to section 4.1.3.2), 
enter the state GMM-DEREGISTERED, and shall delete any P-TMSI, P-TMSI signature, RAI and GPRS 
ciphering key sequence number. Subsequently, the MS may automatically initiate the GPRS attach procedure. 

#10 (ImpHcitly detached) 
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The MS shall change to state GMM-DEREGISTERED.NORMAL-SERVICE. The MS shall then perform a new 
attach procedure. The MS should also activate PDP context(s) to replace any previously active PDP contexts. 

NOTE: In some cases, user interaction may be required and then the MS cannot activate the PDP context(s) 
automatically. 

# 1 1 (PLMN not allowed); 

# 12 (Location area not allowed); or 

#13 (Roaming not allowed in this location area) 

The MS shall delete any RAI, P-TMSI, P-TMSI signature and GPRS ciphering key sequence number, shall set 
the GPRS update status to GU3 ROAMING NOT ALLOWED (and shall store it according to section 4.1.3.2) 
and enter the state GMM-DEREGISTERED. 

If the MS is IMSI attached via MM procedures, the MS shall in addition set the update status to U3 ROAMING 
NOT ALLOWED and shall delete any TMSI, LAI and ciphering key sequence number and shall reset the 
location update attempt counter. The new MM state is MM IDLE. 

The MS shall store the LAI or the PLMN identity in the appropriate forbidden list, i.e. in the "forbidden PLMN 
list" for cause #1 1, in the list of "forbidden location areas for regional provision of service" for cause #12 or in 
the list of "forbidden location areas for roaming" for cause #13. If #1 lor #13 was received, the MS shall 
perform a PLMN selection instead of a cell selection. 

Other values are considered as abnormal cases. The specification of the MS behaviour in those cases is described in 
section 4.7.5.1.5. 

4.7.5.1 .5 Abnormal cases in the MS 

The following abnormal cases can be identified: 

a) Access barred because of access class control 

The routing area updating procedure shall not be started. The MS stays in the current serving cell and applies the 
normal cell reselection process. The procedure is started as soon as possible and if still necessary, i.e. when the 
barred state is removed or because of a cell change. 

b) Lower layer failure before the ROUTING AREA UPDATE ACCEPT or ROUTING AREA UPDATE REJECT 
message is received 

The procedure shall be aborted. The MS shall proceed as described below. 

c) T3330 time-out 

The procedure is restarted four times, i.e. on the fifth expiry of timer T3330, the MS shall abort the procedure. 
The MS shall proceed as described below. 

d) ROUTING AREA UPDATE REJECT, other causes than those treated in section 4.7.5.1.4 
The MS shall proceed as described below. 

e) If a routing area border is crossed, when the MS is in state GMM-ROUTING-AREA-UPDATE-INITIATED, the 
routing area updating procedure shall be aborted and re-initiated immediately. The MS shall set the GPRS update 
status to GU2 NOT UPDATED. 

f) In GSM, if a cell change occurs within the same RA, when the MS is in state GMM-ROUTING-AREA- 
UPDATE-INITIATED, the cell update procedure is performed, before completion of the routing area updating 
procedure. 

g) Routing area updating and detach procedure collision 

GPRS detach containing detach type "GPRS detach" or "combined GPRS/IMSI detach": 

If the MS receives a DETACH REQUEST message before the routing area updating procedure has been 
completed, the routing area updating procedure shall be aborted and the GPRS detach procedure shall be 
progressed. 
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GPRS detach containing detach type "IMSI detach": 

If the MS receives a DETACH REQUEST message before the routing area updating procedure has been 
completed, the routing area updating procedure shall be progressed, i.e. the DETACH REQUEST message shall 
be ignored. 

h) Routing area updating and P-TMSI reallocation procedure collision 

If the MS receives a P-TMSI REALLOCATION REQUEST message before the routing area updating procedure 
has been completed, the P-TMSI reallocation procedure shall be aborted and the routing area updating procedure 
shall be progressed. 

In cases b, c and d the MS shall proceed as follows: 

Timer T3330 shall be stopped if still running. The routing area updating attempt counter shall be incremented. 

If the routing area updating attempt counter is less than 5, and the stored RAI is equal to the RAJ of the current 
serving cell and the GMM update status is equal to GUI UPDATED: 

- the MS shall keep the GMM update status to GUI UPDATED and changes state to GMM- 
REGISTERED.NORMAL-SERVICE. The MS shall start timer T331 1. When timer T331 1 expires the routing 
area updating procedure is triggered again. 

If the routing area updating attempt counter is less than 5, and the stored RAI is different to the RAI of the current 
serving cell or the GMM update status is different to GUI UPDATED: 

- the MS shall start timer T33 11 , shall set the GPRS update status to GU2 NOT UPDATED and changes state to 
GMM-REGISTERED.ATTEMPTING-TO-UPDATE. 

If the routing area updating attempt counter is greater than or equal to 5: 

- the MS shall start timer T3302, shall set the GPRS update status to GU2 NOT UPDATED and shall change to 
state GMM-REGISTERED.ATTEMPTING-TO-UPDATE or optionally to GMM-REGISTERED.PLMN- 

SEARCH(see 4.2.4.1.2). 

4.7.5.1 .6 Abnormal cases on the network side 

The following abnormal cases can be identified: 

a) If a lower layer failure occurs before the message ROUTING AREA UPDATE COMPLETE has been 

received from the MS and a P-TMSI and/or PTMSI signature has been assigned, the network shall abort 
the procedure and shall consider both, the old and new P-TMSI and the corresponding P-TMSI signatures 
as valid until the old P-TMSI can be considered as invalid by the network (see section 4.7.1.5). During 
this period the network may use the identification procedure followed by a P-TMSI reallocation 
procedure if the old P-TMSI is used by the MS in a subsequent message. 

NOTE: Optionally, paging with IMSI may be used if paging with old and new P-TMSI fails. Paging with IMSI 
causes the MS to re-attach as described in section 4.7.9.1. 

b) Protocol error 

If the ROUTING AREA UPDATE REQUEST message has been received with a protocol error, the network 
shall return a ROUTING AREA UPDATE REJECT message with one of the following reject causes: 

#96: Mandatory information element error; 

#99: Information element non-existent or not implemented; 

#100: Conditional IE error; 

#111: Protocol error, unspecified. 

c) T3350 time-out 

On the first expiry of the timer, the network shall retransmit the ROUTING AREA UPDATE ACCEPT message 
and shall reset and restart timer T3350. The retransmission is performed four times, i.e. on the fifth expiry of 
timer T3350, the routing area updating procedure is aborted. Both, the old and the new P-TMSI and the 
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corresponding P-TMSI signatures shall be considered as valid until the old P-TMSI can be considered as invalid 
by the network(see section 4.7.1.5). During this period the network acts as described for case a above. 
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Figure 4.7.5/1 TS 24.008: Routing and combined routing area updating procedure 



4.7.5.2 



Combined routing area updating procedure 



Within a combined routing area updating procedure the messages ROUTING AREA UPDATE ACCEPT and 
ROUTING AREA UPDATE COMPLETE carry information for the routing area updating and the location area 
updating. 



4.7.5.2.1 



Combined routing area updating procedure initiation 



The combined routing area updating procedure is initiated only by a GPRS MS operating in MS operation modes A or 
B, if the MS is in state GMM-REGISTERED and if the network operates in network operation mode I: 

when a GPRS MS that is IMSI attached for GPRS and non-GPRS services detects a change of the routing area in 
state GMM-REGISTERED and MM-IDLE; or 

- when a GPRS MS that is IMSI attached for GPRS services wants to perform an IMSI attach for non-GPRS 

services; or 

after termination of a non-GPRS service via non-GPRS channels to update the association if the MS has changed 
the LA during that non-GPRS service transaction. 

In GSM, the routing and location area identification are broadcast on the broadcast channel(s). A combined routing area 
updating procedure shall abort any ongoing GMM procedure. Aborted GMM procedures shall be repeated after the 
combined routing area updating procedure has been successfully performed. The ROUTING AREA UPDATE 
REQUEST message shall always be the first message sent from the MS in the new routing area after routing area 
change. 

In UMTS, the routing and location area identification are broadcast on the broadcast channel(s) or sent to the MS via 
the PS signaling connection. A combined routing area updating procedure shall abort any ongoing GMM procedure. 
Aborted GMM procedures may be repeated after the combined routing area updating procedure has been successfully 
performed. The ROUTING AREA UPDATE REQUEST message shall always be the first GMM message sent from the 
MS in the new routing area after routing area change. 

To initiate a combined routing area updating procedure the MS sends the message ROUTING AREA UPDATE 
REQUEST to the network, starts timer T3330 and changes to state GMM-ROUTING-UPDATING-INITIATED and 
MM LOCATION UPDATING PENDING. The value of the update type IE in the message shall indicate "combined 
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RA/LA updating". If for the last attempt to update the registration of the location area a MM specific procedure was 
performed, the value of the update type IE in the ROUTING AREA UPDATE REQUEST message shall indicate 
"combined RA/LA updating with IMSI attach". Furthermore the MS shall include the TMSI status IE if no valid TMSI 
is available. 

A GPRS MS in MS operation modes A or B that is in an ongoing circuit-switched transaction, shall initiate the 
combined routing area updating procedure after the circuit-switched transaction has been released, if the MS has 
changed the RA during the circuit-switched transaction and if the network operates in network operation mode I. 

A GPRS MS in MS operation mode A shall initiate the combined routing area updating procedure with IMSI attach 
after the circuit-switched transaction has been released if a GPRS attach was performed during the circuit-switched 
transaction and provided that the network operates in network operation mode I. 

A GPRS MS in MS operation mode A shall perform the normal routing area update procedure during an ongoing 
circuit-switched transaction. 

In UMTS, if the MS wishes to prolong the established RR connection after the normal routing area updating procedure 
when it is served under UMTS area, it may set a follow-on request pending indicator on. 

4.7.5.2.2 GMM Common procedure initiation 

The network may initiate GMM common procedures, e.g. the GMM authentication and ciphering procedure. 

4.7.5.2.3 Combined routing area updating procedure accepted by the network 

Depending on the value of the update result IE received in the ROUTING AREA UPDATE ACCEPT message, two 
different cases can be distinguished: 

Case 1) The update result IE value indicates "combined RA/LA": Routing and location area updating is 
successful; 

Case 2) The update result IE value indicates "RA only": Routing area updating is successful, but location area 
updating is not successful. 

A ROUTING AREA UPDATE COMPLETE message shall be returned to the network if the ROUTING AREA 
UPDATE ACCEPT message contains: 

- a P-TMSI and/or a TMSI; and/or 

- Receive N-PDU Numbers (see 04.65 [78] and TS 25.322). 

In the latter case, the Receive N-PDU Numbers that are valid in the MS shall be included in the ROUTING AREA 
UPDATE COMPLETE message. 

In UMTS, the network should prolong the RR connection if the mobile station has indicated a follow-on request 
pending in ROUTING AREA UPDATE REQUEST. The network may also prolong the RR connection without any 
indication from the mobile terminal. 

4.7.5.2.3.1 Combined routing area updating successful 

The description for normal routing area update as specified in section 4.7.5.1.3 shall be followed. In addition, the 
following description for location area updating applies. 

The handling at the receipt of the ROUTING AREA UPDATE ACCEPT depends on the value received in the update 
result IE as specified below. 

The TMSI reallocation may be part of the combined routing area updating procedure. The TMSI allocated is then 
included in the ROUTING AREA UPDATE ACCEPT message together with the location area identification (LAI). 
The network shall, in this case, change to state GMM -COMMON-PROCEDURE-INITIATED and shall start the timer 
T3350 as described in section 4.7.6. 

The MS, receiving a ROUTING AREA UPDATE ACCEPT message, stores the received location area identification, 
stops timer T3330, enters state MM IDLE, reset the location update attempt counter and sets the update status to Ul 
UPDATED. If the ROUTING AREA UPDATE ACCEPT message contains an IMSI, the mobile station is not allocated 
any TMSI, and shall delete any TMSI accordingly. If the ROUTING AREA UPDATE ACCEPT message contains a 
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TMSI, the MS shall use this TMSI as new temporary identity. The MS shall delete its old TMSI and shall store the new 
TMSI. In this case, an ROUTING AREA UPDATE COMPLETE message is returned to the network. If neither a TMSI 
nor an IMSI has been included by the network in the ROUTING AREA UPDATE ACCEPT message, the old TMSI, if 
any is available, shall be kept. 

Any timer used for triggering the location updating procedure (e.g. T321 1, T3212) shall be stopped if running. 

The network receiving a ROUTING AREA UPDATE COMPLETE message stops timer T3350, changes to GMM- 
REGISTERED state and considers the new TMSI as valid. 

4.7.5.2.3.2 Combined routing are updating successful for GPRS services only 

The description for normal routing area update as specified in section 4.7.5.1.3 shall be followed. In addition, the 
following description for location area updating applies. 

The MS receiving the ROUTING AREA UPDATE ACCEPT message takes one of the following actions depending on 
the reject cause: 

# 2 (IMSI unknown in HLR) 

The MS shall set the update status to U3 ROAMING NOT ALLOWED and shall delete any TMSI, LAI and 
ciphering key sequence number. The new MM state is MM IDLE. The SIM shall be considered as invalid for 
non-GPRS services until switching off or the SIM is removed. 

#16 (MSC temporarily not reachable); 
#17 (Network failure); or 
#22 (Congestion) 

The MS shall change to state GMM-REGISTERED.ATTEMPTING-TO-UPDATE-MM. Timer T3330 shall be 
stopped if still running. The routing area updating attempt counter shall be incremented. If the routing area updating 
attempt counter is less than 5, and the stored RAI is equal to the RAI of the current serving cell and the GMM 
update status is equal to GUI UPDATED: 

- the MS shall keep the GMM update status GUI UPDATED and changes state to GMM- 
REGISTERED.ATTEMPTING-TO-UPDATE-MM. The MS shall start timer T3311. When timer T3311 
expires the combined routing area update procedure indicating "combined RA/LA updating with IMSI 
attach" is triggered again. 

If the routing area updating attempt counter is greater than or equal to 5: 

- the MS shall start timer T3302 and shall change to state GMM-REGISTERED.ATTEMPTING-TO- 
UPDATE-MM; 

a GPRS MS operating in MS operation mode A shall then proceed with appropriate MM specific procedure; 
a GPRS MS operating in MS operation mode B may then proceed with appropriate MM specific procedures. 
The MM sublayer shall act as in network operation mode II as long as the combined GMM procedures are 
not successful and no new RA is entered. The new MM state is IDLE. 

Other values are considered as abnormal cases. The combined routing area updating shall be considered as failed for 
GPRS and non-GPRS services. The specification of the MS behaviour in those cases is specified in section 4.7.5.2.5. 

4.7.5.2.4 Combined routing area updating not accepted by the network 

If the combined routing area updating cannot be accepted, the network sends a ROUTING AREA UPDATE REJECT 
message to the MS. An MS that receives a ROUTING AREA UPDATE REJECT message stops timer T3330 and enters 
state MM IDLE. The MS shall then take different actions depending on the received reject cause: 

# 3 (Illegal MS); 

# 6 (Illegal ME); or 

# 8 (GPRS services and non GPRS services not allowed) 

The MS shall set the GPRS update status to GU3 ROAMING NOT ALLOWED and the update status to U3 
ROAMING NOT ALLOWED (and shall store it according to section 4.1.3.2) and enter the state GMM- 
DEREGISTERED. Furthermore, it shall delete any P-TMSI, P-TMSI signature, TMSI, RAI, LAI, ciphering key 
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sequence number and GPRS ciphering key sequence number and shall consider the SIM as invalid for GPRS and 
non GPRS services until switching off or the SIM is removed. 

# 7 (GPRS services not allowed) 

The MS shall set the GPRS update status to GU3 ROAMING NOT ALLOWED (and shall store it according to 
section 4.L3.2) and shall delete any P-TMSI, P-TMSI signature, RAI and GPRS ciphering key sequence 
number. The SIM shall be considered as invalid for GPRS services until switching off or the SIM is removed. 
The new state is GMM-DEREGISTERED. If in the MS the timer T3212 is not already running, the timer shall 
be set to its initial value and restarted. 

A GPRS MS operating in MS operation mode A or B in network operation mode I, is still IMSI attached for CS 
services in the network. 

# 9 (MS identity cannot be derived by the network) 

The MS shall set the GPRS update status to GU2 NOT UPDATED (and shall store it according to section 
4.1.3.2), enter the state GMM-DEREGISTERED, and shall delete any P-TMSI, P-TMSI signature, RAI and 
GPRS ciphering key sequence number. Subsequently, the MS may automatically initiate the GPRS attach 
procedure. 

A GPRS MS operating in MS operation mode A or B in network operation mode I, is still IMSI attached for CS 
services in the network. 

#10 (ImpUcitly detached) 

A GPRS MS operating in MS operation mode A or B in network operation mode I, is IMSI detached for both 
GPRS and CS services in the network. 

The MS shall change to state GMM-DEREGISTERED.NORMAL-SERVICE. The MS shall then perform a new 
attach procedure. The MS should also activate PDP context(s) to replace any previously active PDP contexts. 

NOTE: In some cases, user interaction may be required and then the MS cannot activate the PDP context(s) 
automatically. 

# 1 1 (PLMN not allowed); 

# 12 (Location area not allowed); or 

#13 (Roaming not allowed in this location area) 

The MS shall set the GPRS update status to GU3 ROAMING NOT ALLOWED and the update status to U3 
ROAMING NOT ALLOWED (and shall store it according to section 4.1.3.2) and enter the state GMM- 
DEREGISTERED. Furthermore, it shall delete any P-TMSI, P-TMSI signature, TMSI, RAI, LAI, ciphering key 
sequence number GPRS ciphering key sequence number, and reset the location update attempt counter. 

The MS shall store the LAI or the PLMN identity in the appropriate forbidden list, i.e. in the "forbidden PLMN 
list" for cause #1 1, in the list of "forbidden location areas for regional provision of service" for cause #12 or in 
the list of "forbidden location areas for roaming" for cause #13. If #1 1 or #13 was received, the MS shall then 
perform a PLMN selection instead of a cell selection. 

Other values are considered as abnormal cases. The specification of the MS behaviour in those cases is described in 
section 4.7.5.2.5. 

4.7.5.2.5 Abnormal cases in the MS 

The abnormal cases specified in section 4.7.5.1.5 apply with the following modification: 

If the GPRS routing area updating counter is less than 5, the MM state remains MM LOCATION UPDATING 
PENDING. 

If the GPRS routing area updating attempt counter is incremented according to section 4.7.5.1.5 the next actions depend 
on the Location Area Identities (stored on SIM and the one of the current serving cell) and the value of the routing area 
updating attempt counter. 
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- if the update status is Ul UPDATED, and the stored LAI is equal to the one of the current serving cell and the 
routing area updating attempt counter is smaller than 5, then the mobile station shall keep the update status to 
Ul UPDATED, the new MM state is MM IDLE substate NORMAL SERVICE, or 

- if the update status is different from Ul UPDATED, or the stored LAI is different from the one of the current 
serving cell, or the routing area updating attempt counter is greater or equal to 5, the mobile station shall delete 
any LAI, TMSI, ciphering key sequence number stored in the SIM and set the update status to U2 NOT 
UPDATED. The new MM state is MM IDLE substate ATTEMPTING TO UPDATE. 

4.7.5.2.6 Abnormal cases on the network side 

The abnormal cases specified in section 4.7.5.1.6 apply with the exceptions for cases a and c in which in addition to the 
P-TMSI and P-TMSI signature the old TMSI shall be considered occupied until the new TMSI is used by the MS in a 
subsequent message. 

4.7.5.3 Selective routing area update procedure 

The selective routing area updating procedure is used at UMTS to GSM and GSM to UMTS intersystem change at cell 
change within the same RA. 

4.7.5.3.1 Uplink signalling / data transmission 

In GPRS STANDBY or PMM-IDLE mode, the MS shall not perform a RA update procedure (as long as the MS stays 
within the same RA) until up-link user data or signalling information is to be sent from the MS. 

If the MS is in the same access network as when it last sent user data or signalling messages, the procedures 
defined for that access system shall be followed. This shall be sending of an LLC PDU in a GPRS cell or 
initiating the SERVICE REQUEST procedure in a UMTS cell. 

If the MS is in a different access network as when it last sent user data or signalling messages, the RA update 
procedure shall be performed before the sending of user data or signalling messages. 

If the periodic routing area update timer expires the MS shall initiate the periodic routing area update procedure. 

4.7.5.3.2 Downlink signalling / data transmission 

If the 2G/3G-SGSN receives user data for an MS in GPRS STANDBY or PMM-IDLE, the SGSN shall page the RA 
where the MS is located. This may include both GPRS and UMTS cells. 

If the MS receives this page in the same access network as when it last sent user data or signalling messages, the 
procedures defined for that access system shall be followed. This shall be sending of an LLC PDU in a GPRS 
cell or initiating the SERVICE REQUEST procedure in a UMTS cell. 

If the MS receives this page in a different access network as when it last sent user data or signalling message, the 
RA update procedure shall be performed. 

4.7.6 P-TMSI reallocation procedure 

A temporary mobile station identity for GPRS services, the Packet-TMSI (P-TMSI), is used for identification within the 
radio interface signalling procedures. The structure of the P-TMSI is specified in TS 23.003 [10]. The P-TMSI has 
significance only within a routing area. Outside the routing area it has to be combined with the routing area 
identification (RAI) to provide for an unambiguous identity. 

The purpose of the P-TMSI reallocation procedure is to provide identity confidentiality, i.e. to protect a user against 
being identified and located by an intruder (see GSM 02.09 [5] and 03.20 [34]). 

Usually, P-TMSI reallocation is performed at least at each change of a routing area. (Such choices are left to the 
network operator). 

The reallocation of a P-TMSI is performed by the unique procedure defined in this section. This procedure can only be 
initiated by the network in state GMM-REGISTERED. 

P-TMSI can also be implicitly reallocated in the attach or routing area updating procedures. The implicit reallocation of 
a P-TMSI is described in the corresponding sections. 
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NOTE : Normally, the P-TMSI reallocation will take place in conjunction with another GMM procedure, e.g. at 
routing area updating (see TS 29.002 [37]). 

4.7.6.1 P-TMSI reallocation initiation by the network 

The network initiates the P-TMSI reallocation procedure by sending a P-TMSI REALLOCATION COMMAND 
message to the MS and starts the timer T3350. 

The P-TMSI REALLOCATION COMMAND message contains a new combination of P-TMSI, RAI and optionally a 
P-TMSI signature allocated by the network. 

The network shall not send any user data during the P-TMSI reallocation procedure. 

4.7.6.2 P-TMSI reallocation completion by the MS 

Upon receipt of the P-TMSI REALLOCATION COMMAND message, the MS stores the Routing Area Identifier 
(RAI) and the P-TMSI and sends a P-TMSI REALLOCATION COMPLETE message to the network. 

If a P-TMSI signature is present in the P-TMSI REALLOCATION COMMAND message, the MS shall store the new 
P-TMSI signature and shall if available delete the old P-TMSI signature. If no P-TMSI signature is present in the P- 
TMSI REALLOCATION COMMAND message, the old P-TMSI signature, if available, shall be kept. 

4.7.6.3 P-TMSI reallocation completion by the network 

Upon receipt of the P-TMSI REALLOCATION COMPLETE message, the network stops the timer T3350 and 
considers the new P-TMSI as valid and the old one as invalid. 

In GSM, the GMM layer shall notify the LLC layer that the P-TMSI has been changed (see GSM 04.64 [76]). 

4.7.6.4 Abnormal cases on the network side 

The following abnormal cases can be identified: 

a) Lower layer failure 

If a lower layer failure is detected before the P-TMSI REALLOCATION COMPLETE message is received, the 
old and the new P-TMSI shall be considered as occupied until the old P-TMSI can be considered as invalid by 
the network (see section 4.7. L5). 

During this period the network: 

may first use the old P-TMSI for paging for an implementation dependent number of paging attempts in the case 
of network originated transactions. Upon response from the MS, the network may re-initiate the P-TMSI 
reallocation. If no response is received to the paging attempts, the network may use the new P-TMSI for paging 
for an implementation dependent number of paging attempts. Upon response from the MS the network shall 
consider the new P-TMSI as valid and the old P-TMSI as invalid. If no response is received to the paging 
attempts, the network may use the IMSI for paging, for an implementation dependent number of paging 
attempts; 

NOTE: Paging with IMSI causes the MS to re-attach as described in section 4.7.9. L 

shall consider the new P-TMSI as valid if it is used by the MS (see section 4.7. L5); or 

may use the identification procedure followed by a new P-TMSI reallocation if the MS uses the old P-TMSI. 

b) Expiry of timer T3350 

The P-TMSI reallocation procedure is supervised by the timer T3350. The network shall, on the first expiry of 
timer T3350, reset and restart timer T3350 and shall retransmit the P-TMSI REALLOCATION COMMAND. 
This retransmission is repeated four times, i.e. on the fifth expiry of timer T3350, the network shall abort the 
reallocation procedure and shall follow the rules for case a as described above. 

c) P-TMSI reallocation and GPRS attach procedure collision 
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If the network receives an ATTACH REQUEST message before the ongoing P-TMSI reallocation procedure has 
been completed the network shall proceed with the GPRS attach procedure after deletion of the GMM context. 

d) P-TMSI reallocation and an MS initiated GPRS detach procedure collision 

If the network receives a DETACH REQUEST message before the ongoing P-TMSI reallocation procedure has 
been completed, the network shall abort the P-TMSI reallocation procedure and shall progress the GPRS detach 
procedure. 

e) P-TMSI reallocation and a routing area updating procedure collision 

If the network receives a ROUTING AREA UPDATE REQUEST message before the ongoing P-TMSI 
reallocation procedure has been completed, the network shall abort the P-TMSI reallocation procedure and shall 
progress the routing area updating procedure. The network may then perform a new P-TMSI reallocation. 

f) P-TMSI reallocation and a service request procedure collision 

If the network receives a SERVICE REQUEST message before the ongoing P-TMSI reallocation procedure 
procedure has been completed, the network shall progress both procedures. 

If there are different new P-TMSI included in subsequent P-TMSI REALLOCATION COMMAND messages, due to 
an aborted or repeated P-TMSI reallocation procedure, the MS always regards the newest and its existing P-TMSI as 
valid for the recovery time. 



MS Network 

P-TMSI REALLOCATION COMMAND 



P-TMSI REALLOCATION COMPLETE 



Start T3350 
Stop T3350 



Figure 4.7.6/1 TS 24.008: P-TMSI reallocation procedure 

4.7.7 Authentication and cipinering procedure 

4.7.7a Authentication and ciphering procedure used for UMTS authentication 

challenge. 

The purpose of the authentication and ciphering procedure is fourfold: 

to permit the network to check whether the identity provided by the MS is acceptable or not, see GSM 03.20 
[13]); 

to provide parameters enabling the MS to calculate a new GPRS ciphering key sequence number. 

to let the network set the security mode (security/no security) and algorithm; and 

To permit the receiving entity to check the integrity of signalling messages. 

In UMTS, and in the case of a UMTS authentication challenge, the authentication and ciphering procedure can be used 
for authentication only. 

The cases in which the authentication and ciphering procedure shall be used are defined in GSM 02.09 [5]. 

The authentication and ciphering procedure is always initiated and controlled by the network. However, in the case of a 
UMTS authentication challenge, there is the possibility for the MS to reject the network. 

A R99 GPRS-only MS connected to a R99 core network (even using the BSS radio access) shall support a UMTS 
authentication challenge. 

In the case of a UMTS authentication challenge in a GSM system the authentication and ciphering procedure can be 
used for either: 
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authentication only; 

setting of the ciphering mode and the ciphering algorithm only; or 

authentication and the setting of the ciphering mode and the ciphering algorithm. 

4.7.7b Authentication and ciphering procedure used for GSM authentication 

challenge 

The purpose of the authentication and ciphering procedure is threefold: 

to permit the network to check whether the identity provided by the MS is acceptable or not, see GSM 03.20 
[13]); 

to provide parameters enabling the MS to calculate a new GPRS ciphering key; and 

In GSM, to let the network set the ciphering mode (ciphering/no ciphering) and algorithm. 
In GSM, the authentication and ciphering procedure can be used for either: 

authentication only; 

setting of the ciphering mode and the ciphering algorithm only; or 

authentication and the setting of the ciphering mode and the ciphering algorithm. 

The cases in which the authentication and ciphering procedure shall be used are defined in GSM 02.09 [5]. 

In GSM, the authentication and ciphering procedure is always initiated and controlled by the network. It shall be 
performed in a non ciphered mode because of the following reasons: 

- the network cannot decipher a ciphered AUTHENTICATION AND CIPHERING RESPONSE from an 
unauthorised MS and put it on the black list; and 

to be able to define a specific point in time from which on a new GPRS ciphering key should be used instead of 
the old one. 

The network should not send any user data during the authentication and ciphering procedure. 

4.7.7.1 Authentication and ciphering initiation by the network 

The network initiates the authentication and ciphering procedure by transferring an AUTHENTICATION AND 
CIPHERING REQUEST message across the radio interface and starts timer T3360. The AUTHENTICATION AND 
CIPHERING REQUEST message shall contain all parameters necessary to calculate the response parameters when 
authentication is performed (see GSM 03.20 [13]). 

If authentication is requested, then the AUTHENTICATION AND CIPHERING REQUEST message shall contain 
either: 

In a GSM authentication challenge, the GPRS ciphering key sequence number, allocated to the GPRS ciphering 
key and the RAND, or 

In a UMTS authentication challenge, the GPRS ciphering key sequence number, allocated to the ciphering and 
integrity keys, the RAND and the AUTN. 

In GSM, if authentication is not requested, then the AUTHENTICATION AND CIPHERING REQUEST message shall 
not contain neither the GPRS ciphering key sequence number nor the RAND. 

In GSM, if ciphering is requested, then the AUTHENTICATION AND CIPHERING REQUEST message shall indicate 
the GPRS ciphering algorithm. 

The network includes the A&C reference number information element in the AUTHENTICATION AND CIPHERING 
REQUEST message. Its value is chosen in order to link an AUTHENTICATION AND CIPHERING REQUEST in a 
RA with its RESPONSE. The A&C reference number value might be based on the RA Colour Code value. 

Additionally, the network may request the MS to include its IMEISV in the AUTHENTICATION AND CIPHERING 
RESPONSE message. 
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4.7.7.2 Authentication and ciphering response by the MS 

An MS that is attached to GPRS shall be ready to respond upon an AUTHENTICATION AND CIPHERING 
REQUEST message at any time. 

In a GSM authentication challenge, if the AUTHENTICATION AND CIPHERING REQUEST message includes the 
authentication parameters RAND and GPRS CKSN, then upon receipt of the message, the MS processes the challenge 
information and sends an AUTHENTICATION AND CIPHERING RESPONSE message to the network. The value of 
the received A&C reference number information element shall be copied into the A&C reference number information 
element in the AUTHENTICATION AND CIPHERING RESPONSE message.The new GPRS ciphering key calculated 
from the challenge information shall overwrite the previous one. It shall be stored and shall be loaded into the ME 
before the AUTHENTICATION AND CIPHERING RESPONSE message is transmitted. The GPRS ciphering key 
sequence number shall be stored together with the calculated ciphering key. 

In a UMTS authentication challenge, if the AUTHENTICATION AND CIPHERING REQUEST message includes the 
UMTS authentication parameters GPRS CKSN, RAND and AUTN, then upon receipt of the message, the MS processes 
the challenge information and sends an AUTHENTICATION AND CIPHERING RESPONSE message to the network. 
The value of the received A&C reference number information element shall be copied into the A&C reference number 
information element in the AUTHENTICATION AND CIPHERING RESPONSE message. The new ciphering keys 
calculated from the challenge information shall overwrite the previous ones and be stored on the SIM before the 
AUTHENTICATION RESPONSE message is transmitted. The ciphering keys stored on the SIM shall be loaded into 
the ME when any valid SECURITY MODE COMMAND is received during an RR connection (the definition of a valid 
SECURITY MODE COMMAND message is given in GSM04.18 section 3.4.7.2). 

In GSM, if the AUTHENTICATION AND CIPHERING REQUEST message does not include either the GPRS or the 
UMTS authentication parameters (RAND and GPRS CKSN or RAND, AUTN and GPRS CKSN), then upon receipt of 
the message, the MS replies by sending an AUTHENTICATION AND CIPHERING RESPONSE message to the 
network. 

In GSM, the GMM layer shall notify the LLC layer if ciphering shall be used or not and if yes which algorithm and 
GPRS ciphering key that shall be used (see GSM 04.64 [76]). 

4.7.7.3 Authentication and ciphering completion by the network 

Upon receipt of the AUTHENTICATION AND CIPHERING RESPONSE message, the network stops the timer T3360 
and checks the validity of the response (see GSM 03.20 [13]). For this, it may use the A&C reference number 
information element within the AUTHENTICATION AND CIPHERING RESPONSE message to determine whether 
the response is correlating to the last request that was sent. 

In GSM, the GMM layer shall notify the LLC sublayer if ciphering shall be used or not and if yes which algorithm and 
GPRS ciphering key that shall be used (see GSM 04.64 [76]). 

4.7.7.4 GPRS ciphering key sequence number 

The security parameters for authentication and ciphering are tied together in sets, i.e. from a challenge parameter 
RAND both the authentication response parameter and the GPRS ciphering key can be computed given the secret key 
associated to the IMSI. 

In order to allow start of ciphering on a logical link without authentication, GPRS ciphering key sequence numbers are 
introduced. 

The sequence number is managed by the network such that the AUTHENTICATION AND CIPHERING REQUEST 
message contains the sequence number allocated to the key(s) which may be computed from the RAND parameter 
carried in that message. 

The MS stores this number with the key(s), and includes the corresponding sequence number in the ROUTING AREA 
UPDATE REQUEST and ATTACH REQUEST messages. If the sequence number is deleted, the associated key(s) 
shall be considered as invalid. 

The network may choose to start ciphering with the stored key (under the restrictions given in GSM 02.09) if the stored 
sequence number and the one given from the MS are equal and the previously negotiated ciphering algorithm is known 
and supported in the network. When ciphering is requested at GPRS attach, the authentication and ciphering procedure 
shall be performed since the MS does not store the ciphering algorithm at detach. 
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Upon GPRS attach, if ciphering is to be used, an AUTHENTICATION AND CIPHERING REQUEST message shall 
be sent to the MS to start ciphering. 

If the GPRS ciphering key sequence number stored in the network does not match the GPRS ciphering key sequence 
number received from the MS in the ATTACH REQUEST message, then the network should authenticate the MS. 

In GSM, the MS starts ciphering after sending the AUTHENTICATION AND CIPHERING RESPONSE message. The 
SGSN starts ciphering when a valid AUTHENTICATION AND CIPHERING RESPONSE is received from the MS. 

In UMTS, see specification TS 25.331 

In GSM, as an option, the network may decide to continue ciphering without sending an AUTHENTICATION AND 
CIPHERING REQUEST message after receiving a ROUTING AREA UPDATE REQUEST message with a valid 
GPRS ciphering key sequence number. Both the MS and the network shall use the latest ciphering parameters. The 
SGSN starts ciphering when sending the ciphered ROUTING AREA UPDATE ACCEPT message to the MS. The MS 
starts ciphering after receiving a valid ciphered ROUTING AREA UPDATE ACCEPT message from the network. 

In UMTS, ciphering for the PS domain is described in TS 25.331. 

4.7.7.5 Authentication not accepted by the networl^ 

If authentication and ciphering fails, i.e. if the response is not valid, the network considers whether the MS has used the 
P-TMSI or the IMSI for identification. 

If the P-TMSI has been used, the network may decide to initiate the identification procedure. If the IMSI given 
by the MS differs from the one the network had associated with the P-TMSI, the authentication should be 
restarted with the correct parameters. If the IMSI provided by the MS is the expected one (i.e. authentication has 
really failed), the network should proceed as described below. 

If the IMSI has been used, or the network decides not to try the identification procedure, an 
AUTHENTICATION AND CIPHERING REJECT message should be transferred to the MS. 

Upon receipt of an AUTHENTICATION AND CIPHERING REJECT message, the MS shall set the GPRS update 
status to GU3 ROAMING NOT ALLOWED and shall delete the P-TMSI, P-TMSI signature, RAI and GPRS 
ciphering key sequence number stored. If available, also the TMSI, LAI and ciphering key sequence number shall be 
deleted and the update status shall be set to U3 ROAMING NOT ALLOWED. The SIM shall be considered as 
invalid until switching off or the SIM is removed. 

If the AUTHENTICATION AND CIPHERING REJECT message is received, the MS shall abort any GMM 
procedure, shall stop the timers T3310 and T3330 (if running) and shall enter state GMM-DEREGISTERED. 

4.7.7.5.1 Authentication not accepted by the MS 

In a UMTS authentication challenge, the authentication procedure is extended to allow the MS to check the authenticity 
of the core network. Thus allowing, for instance, detection of false base station. 

Following a UMTS authentication challenge, the MS may reject the core network, on the grounds of an incorrect 
AUTN parameter (see TS 33.102). This parameter contains two possible causes for authentication failure: 

a) MAC code failure 

If the MS considers the MAC code (supplied by the core network in the AUTN parameter) to be invalid, it 
shall send a PS AUTHENTICATION FAILURE message (9.2.3a) to the network, with the failure cause 'PS 
MAC failure' and parameters provided by the SIM (see TS 33.102). Thereafter the procedural behaviour is ffs. 

b) SQN failure 

If the MS considers the SQN (supplied by the core network in the AUTN parameter) to be out of range, it shall 
send a PS AUTHENTICATION FAILURE message (9.2.3a) to the network, with the failure cause 'PS Synch 
failure' and parameters provided by the SIM (see 33.102) Upon receipt of this message, the core network may 
renegotiate with the HLR/AuC and provide the MS with new authentication parameters. 

Note: Actions might vary according to the presence/absence of an integrity protected connection to a different 
core network node. 
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4.7.7.6 Abnormal cases on the network side 

The following abnormal cases can be identified: 

a) Lower layer failure 

Upon detection of a lower layer failure before the AUTHENTICATION AND CIPHERING RESPONSE is 
received, the network shall abort the procedure. 

b) Expiry of timer T3360 

The network shall, on the first expiry of the timer T3360, retransmit the AUTHENTICATION AND 
CIPHERING REQUEST and shall reset and start timer T3360. This retransmission is repeated four times, i.e. on 
the fifth expiry of timer T3360, the procedure shall be aborted. 

c) Collision of an authentication and ciphering procedure with a GPRS attach procedure 

If the network receives an ATTACH REQUEST message before the ongoing authentication procedure has been 
completed and no GPRS attach procedure is pending on the network (i.e. no ATTACH ACCEPT/REJECT 
message has to be sent as an answer to an ATTACH REQUEST message), the network shall abort the 
authentication and ciphering procedure and proceed with the new GPRS attach procedure. 

d) Collision of an authentication and ciphering procedure with a GPRS attach procedure when the authentication 
and ciphering procedure has been caused by a previous GPRS attach procedure 

If the network receives an ATTACH REQUEST message before the ongoing authentication procedure has been 
completed and a GPRS attach procedure is pending (i.e. an ATTACH ACCEPT/REJECT message has still to be 
sent as an answer to an earlier ATTACH REQUEST message), then: 

If one or more of the information elements in the ATTACH REQUEST message differs from the ones received 
within the previous ATTACH REQUEST message, the network shall not treat the authentication any further and 
proceed with the GPRS attach procedure ; or 

If the information elements do not differ, then the network shall not treat any further this new ATTACH 
REQUEST. 

Collision of an authentication and ciphering procedure with a GPRS detach procedure 

GPRS detach containing cause "power off": 

If the network receives a DETACH REQUEST message before the ongoing authentication and ciphering 
procedure has been completed, the network shall abort the authentication and ciphering procedure and shall 
progress the GPRS detach procedure. 

GPRS detach containing other causes than "power off: 

If the network receives a DETACH REQUEST message before the ongoing authentication and ciphering procedure 
has been completed, the network shall complete the authentication and ciphering procedure and shall respond to 
the GPRS detach procedure as described in section 4.7.4. 

e) Collision of an authentication and ciphering procedure with a routing area updating procedure 

If the network receives a ROUTING AREA UPDATE REQUEST message before the ongoing authentication 
procedure has been completed, the network shall progress both procedures. 
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AUTHENTICATION AND CIPHERING REQUEST 
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AUTHENTICATION AND CIPHERING RESPONSE 



Stop T3360 
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Figure 4.7.7/1 TS 24.008: Authentication and ciphering procedure 

4.7.8 Identification procedure 

The identification procedure is used by the network to request an MS to provide specific identification parameters to the 
network e.g. International Mobile Subscriber Identity, International Mobile Equipment Identity (see TS 23.003). For the 
presentation of the IMEI, the requirements of GSM 02.09 apply. 

4.7.8.1 Identification initiation by the network 

The network initiates the identification procedure by transferring an IDENTITY REQUEST message to the MS and 
starts the timer T3370. The IDENTITY REQUEST message specifies the requested identification parameters in the 
identity type information element. 

4.7.8.2 Identification response by the MS 

An MS that has been attached to GPRS shall be ready to respond to an IDENTITY REQUEST message at any time. 

Upon receipt of the IDENTITY REQUEST message the MS sends back an IDENTITY RESPONSE message. The 
IDENTITY RESPONSE message shall contain the identification parameters as requested by the network. 

4.7.8.3 Identification completion by the network 

Upon receipt of the IDENTITY RESPONSE the network shall stop timer T3370. 

4.7.8.4 Abnormal cases on the network side 

The following abnormal cases can be identified: 

a) Lower layer failure 

Upon detection of a lower layer failure before the IDENTITY RESPONSE is received, the network shall abort 
any ongoing GMM procedure. 

b) Expiry of timer T3370 

The identification procedure is supervised by the network by the timer T3370. The network shall, on the first 
expiry of the timer T3370, retransmit the IDENTITY REQUEST message and reset and restart the timer T3370. 
This retransmission is repeated four times, i.e. on the fifth expiry of timer T3370, the network shall abort the 
identification procedure and any ongoing GMM procedure. 

c) Collision of an identification procedure with a GPRS attach procedure 

If the network receives an ATTACH REQUEST message before the ongoing identification procedure has been 
completed and no GPRS attach procedure is pending on the network (i.e. no ATTACH ACCEPT/REJECT 
message has still to be sent as an answer to an ATTACH REQUEST message), the network shall proceed with 
the GPRS attach procedure. 

d) Collision of an identification procedure with a GPRS attach procedure when the identification procedure has 
been caused by a GPRS attach procedure 

If the network receives an ATTACH REQUEST message before the ongoing identification procedure has been 
completed and a GPRS attach procedure is pending (i.e. an ATTACH ACCEPT/REJECT message has to be sent as 
an answer to an earlier ATTACH REQUEST message), then: 

If one or more of the information elements in the ATTACH REQUEST message differs from the ones received 
within the previous ATTACH REQUEST message, the network shall proceed with the GPRS attach procedure; 
or 

If the information elements do not differ, then the network shall not treat any further this new ATTACH 
REQUEST. 

Collision of an identification procedure with an MS initiated GPRS detach procedure 
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GPRS detach containing cause "power off: 

If the network receives a DETACH REQUEST message before the ongoing identification procedure has been 
completed, the network shall abort the identification procedure and shall progress the GPRS detach procedure. 

GPRS detach containing other causes than "power off": 

If the network receives a DETACH REQUEST message before the ongoing identification procedure has been 
completed, the network shall complete the identification procedure and shall respond to the GPRS detach 
procedure as described in section 4.7.4. 

e) Collision of an identification procedure with a routing area updating procedure 

If the network receives a ROUTING AREA UPDATE REQUEST message before the ongoing identification 
procedure has been completed, the network shall progress both procedures. 

f) Collision of an identification procedure with a service request procedure 

If the network receives a SERVICE REQUEST message before the ongoing identification procedure has been 
completed, the network shall progress both procedures. 



MS Network 

IDENTITY REQUEST 



Start T3370 



IDENTITY RESPONSE 



-► Stop T3370 



Figure 4.7.8/1 TS 24.008: Identification procedure 

4.7.9 Paging procedure 
4.7.9.1 Paging for GPRS services 

In GSM, paging is used by the network to identify the cell the MS has currently selected, or to prompt the mobile to re- 
attach if necessary as a result of network failure. If the MS is not GPRS attached when it receives a paging for GPRS 
services, the MS shall ignore the paging. 

In UMTS, paging is used by the network to request the establishment of PS signaling connection or to prompt the 
mobile to re-attach if necessary as a result of network failure. If the MS is not GPRS attached when it receives a paging 
for GPRS services, the MS shall ignore the paging. 

4.7.9.1 .1 Paging for GPRS services using P-TMSI 

The network shall initiate the paging procedure for GPRS services using P-TMSI when GMM signalling messages or 
user data is pending to be sent to the MS while the Mobile Reachable timer is running. The network may page only 
GPRS MSs which are GMM-REGISTERED and identified by a local P-TMSI. 

To initiate the procedure the GMM entity requests the RR sublayer to start paging (see GSM 04.18, GSM 04.60 [75], 
TS 25.331 and TS 25.413) and starts timer T3313. Upon reception of a paging indication, the MS shall respond to the 
paging (see TS 24.007 [20], TS 23.060 [74], TS 25.331 and TS 25.413). 

The network shall stop timer T3313 when a response is received from the MS. When the timer T3313 expires the 
network may reinitiate paging. 

In GSM, the network shall stop timer T3313 when a response is received from the MS and shall start the READY timer. 
When the timer T3313 expires the network may reinitiate paging. 

4.7.9.1 .2 Paging for GPRS services using IMSI 

Paging for GPRS services using IMSI is an abnormal procedure used for error recovery in the network. 
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The network may initiate paging using IMSI if the P-TMSI is not available due to a network failure. 

To initiate the procedure the GMM entity in the network requests the RR sublayer to start paging (see GSM 04.18, 
GSM 04.60 [75], TS 25.331 and TS 25.413). 

Upon reception of a paging indication for GPRS services using IMSI, the MS shall locally deactivate any active PDF 
contexts and locally detach from GPRS. The local detach includes deleting any RAI, P-TMSI, P-TMSI signature and 
GPRS ciphering key sequence number stored, setting the GPRS update status to GU2 NOT UPDATED and changing 
state to GMM-DEREGISTERED. 

After performing the local detach, the MS shall then perform a GPRS attach or combined GPRS attach procedure. 
After performing the attach, a MS should activate PDP context(s) to replace any previously active PDP context(s). 

NOTE: In some cases, user interaction may be required and then the MS cannot activate the PDP context(s) 
automatically. 

NOTE: The MS does not respond to the paging except with the Attach Request. Hence timer T3313 in the network 
is not used when paging with IMSI. 

NOTE: Paging without DRX parameters may require a considerable extension of the paging duration. 

4.7.9.2 Paging for non-GPRS services 

The network may initiate the paging procedure for non-GPRS services when the MS is IMSI attached for non-GPRS 
services. To initiate the procedure the GMM entity requests the RR sublayer to initiate paging (see GSM 04.18 GSM 
04.60 [75], TS 25.331 and TS 25.413) for non-GPRS services. The MS identity used for paging shall be the allocated 
TMSI if acknowledged by the MS, otherwise the IMSI. 

4.7.10 Receiving a GMM STATUS message by a GMM entity 

If the MS receives a GMM STATUS message no state transition and no specific action shall be taken as seen from the 
radio interface, i.e. local actions are possible. The actions to be taken on receiving a GMM STATUS message in the 
network are an implementation dependent option. 

4.7.1 1 GMM support for anonymous access 

The GMM-AA entity within the MM sublayer (see GSM 04.07) supports SM message routing for anonymous PDP 
context handling independently of the GMM procedures described throughout section 4.7 as described in section 
6.1.1.1. There are no dedicated signalling procedures specified for the GMM-AA entity. 

An AA-READY timer is implemented in the GMM-AA entity. This timer is used to supervise the time an anonymous 
access may be active without user data transfer. 

4.7.11.1 MS side 

The AA-READY timer value shall either be the default value or a value set by the network and sent to the MS by means 
of an SM message. The AA-READY timer shall be reset and restarted in the MS when the GMM-AA entity receives 
an indication from lower layers that an LLC frame has been transmitted on the radio interface. When the AA-READY 
timer expires or a routing area border is crossed, the MS shall deactivate the anonymous access locally, i.e. no 
signalling messages are exchanged between the MS and the network. 

While the AA-READY timer is running, the MS shall perform cell updates when a new cell is selected within the same 
RA. 

4.7.11.2 Network side 

The AA-READY timer value shall either be the default value or a value received from the MS and possibly modified by 
the network and sent to the MS by means of an SM message. The AA-READY timer shall be reset and restarted by the 
network when the GMM-AA entity receives an indication from lower layers that an LLC frame has been successfully 
received by the network. When the AA-READY timer expires, the network shall deactivate the anonymous access 
locally, i.e. no signalling messages are exchanged between the network and the MS. 
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To account for the LLC frame uplink transmission delay, the AA-READY timer value should be slightly shorter in the 
network than in the MS. This is a network implementation issue. 

4.7.12 GMM Information procedure 

The GMM information message support is optional in the network. The MM information procedure may be invoked by 
the network at any time during an established GMM context. 

4.7.12.1 GMM information procedure initiation by the network 

The GMM information procedure consists only of the GMM INFORMATION message sent from the network to the 
mobile station. During an established GMM context, the network may send none, one, or more GMM INFORMATION 
messages to the mobile station. If more than one GMM INFORMATION message is sent, the messages need not have 
the same content. 

4.7.12.2 GMM information procedure in the mobile station 

When the mobile station (supporting the GMM information message) receives an GMM INFORMATION message, it 
shall accept the message and optionally use the contents to update appropriate information stored within the mobile 
station. 

If the mobile station does not support the GMM information message the mobile station shall ignore the contents of the 
message and return an GMM STATUS message with cause #97. 

4.7.13 Service Request procedure (UMTS only) 

The purpose of this procedure is to transfer the PMM mode from PMM-IDLE to PMM-CONNECTED mode, and/or to 
assign radio access bearer in case of PDF contexts are activated without radio access bearer assigned. In latter case, the 
PMM mode may be PMM-IDLE or PMM-CONNECTED mode.This procedure is used for; 

- the initiation of CM layer service (e.g. SM or SMS) procedure from the MS in PMM-IDLE mode. 

- the network to transfer down link signalling, 

- uplink and downlink user packet. 

For downlink transfer of signalling or user packet, the trigger is given from the network by the paging request 
procedure, which is out of scope of this specification. 

Service type can take either of the following values, "signalling", "data" or "paging response". Each of the values shall 
be selected according to the criteria to initiate the Service request procedure. 

The criteria to invoke the Service request procedure are when; 

a) the MS has any signalling message, that requires security protection, to be sent to the network in PMM-IDLE 
mode (i.e., no secure PS signalling connection has been established). In this case, the service type shall be set 
to "signalling". 

b) the MS, either in PMM-IDLE and PMM-CONNECTED mode, has pending user packet to be sent and no radio 
access bearer is established for the PDP context. The procedure is initiated by an indication from the lower 
layers. In this case, the service type shall be set to "data". 

c) the MS receives a paging request for PS domain from the network in PMM-IDLE mode. In this case, the 
service type shall be set to "paging response". 

After completion of a Service request procedure, the pending service is resumed and uses then the connection 
established by the procedure. If the service type is indicating "data", then the radio access bearers for all the activated 
PDP contexts are re-established. The selective re-assignment capability is not supported for the simplicity of the 
function. 

4.7.13.1 Service Request procedure initiation 

The MS initiates the Service request procedure by sending a SERVICE REQUEST message. The timer T3317 shall be 
started after the SERVICE REQUEST message has been sent and state GMM-SER VICE-REQUEST-INITIATED is 
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entered. The message SERVICE REQUEST shall contain the P-TMSI and the Service type indicating either data, 
signaling or paging response. 

4.7.13.2 GMM common procedure initiation 

The network may initiate GMM common procedures, e.g. the GMM identification and GMM authentication and 
ciphering procedure, or security mode setting procedure, depending on the received information such as IMSI, GPRS 
ciphering key sequence number, P-TMSI and P-TMSI signature. 

4.7.1 3.3 Service request procedure accepted by the network 

An indication from the lower layers that the security mode setting procedure is completed, or reception of a SERVICE 
ACCEPT message, shall be treated as a successful completion of the procedure. The timer T3317 shall be stopped, and 
the MS enters GMM-REGISTERED state and PMM-CONNECTED mode. 

4.7.1 3.4 Service request procedure not accepted by the network 

If the Service request cannot be accepted, the network returns a SERVICE REJECT message to the mobile 
station. An MS that receives a SERVICE REJECT message stops timer T3317. The MS shall then take different 
actions depending on the received reject cause value: 

# 3 (Illegal MS); or 

# 6 (Illegal ME) 

- The MS shall set the GPRS update status to GU3 ROAMING NOT ALLOWED (and shall store it according to 
section 4.L3.2) and enter the state GMM-DEREGISTERED. Furthermore, it shall delete any P-TMSI, P-TMSI 
signature, RAJ and GPRS ciphering key sequence number and shall consider the SIM as invalid for GPRS 
services until switching off or the SIM is removed. 

- If the MS is IMSI attached via MM procedures, the MS shall in addition set the update status to U3 ROAMING 
NOT ALLOWED, shall delete any TMSI, LAI and GPRS ciphering key sequence number. The new MM state is 
MM IDLE. The SIM shall be considered as invalid also for non-GPRS services until switching off or the SIM is 
removed. 

# 7 (GPRS services not allowed) 

- The MS shall set the GPRS update status to GU3 ROAMING NOT ALLOWED (and shall store it according to 
section 4.1.3.2.9) and shall delete any P-TMSI, P-TMSI signature, RAI and GPRS ciphering key sequence 
number. The SIM shall be considered as invalid for GPRS services until switching off or the SIM is removed. 
The new state is GMM-DEREGISTERED. 

# 9 (MS identity cannot be derived by the network) 

- The MS shall set the GPRS update status to GU2 NOT UPDATED (and shall store it according to section 
4.1.3.2), enter the state GMM-DEREGISTERED, and shall delete any P-TMSI, P-TMSI signature, RAI and 
GPRS ciphering key sequence number. Subsequently, the MS may automatically initiate the GPRS attach 
procedure. 

#10 (ImpHcitly detached) 

- The MS shall change to state GMM-DEREGISTERED.NORMAL-SERVICE. The MS shall then perform a new 
attach procedure. The MS should also activate PDP context(s) to replace any previously active PDP contexts. 

NOTE: In some cases, user interaction may be required and then the MS cannot activate the PDP context(s) 
automatically. 

# 1 1 (PLMN not allowed); 

# 12 (Location area not allowed); or 

#13 (Roaming not allowed in this location area) 
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The MS shall delete any RAI, P-TMSI, P-TMSI signature and GPRS ciphering key sequence number, shall set 
the GPRS update status to GU3 ROAMING NOT ALLOWED (and shall store it according to section 4.L3.2) 
and enter the state GMM-DEREGISTERED. 

- If the MS is IMSI attached via MM procedures, the MS shall in addition set the update status to U3 ROAMING 
NOT ALLOWED and shall delete any TMSI, LAI and GPRS ciphering key sequence number. The new MM 
state is MM IDLE. 

The MS shall store the LAI or the PLMN identity in the appropriate forbidden list, i.e. in the "forbidden PLMN 
list" for cause #1 1, in the list of "forbidden location areas for regional provision of service" for cause #12 or in 
the list of "forbidden location areas for roaming" for cause #13. If #1 lor #13 was received, the MS shall 
perform a PLMN selection instead of a cell selection. 

Other values are considered as abnormal cases. The specification of the MS behaviour in those cases is described in 
section 4.7. 13.5. 

4.7.1 3.5 Abnormal cases in the MS 

The following abnormal cases can be identified: 

a) Access barred because of access class control 

The Service request procedure shall not be started. The MS stays in the current serving cell and applies normal 
cell reselection process. The Service request procedure may be started by CM layer if it is still necessary, i.e. 
when access is granted or because of a cell change. 

b) Lower layer failure before the ciphering mode setting procedure is completed, SERVICE ACCEPT or SERVICE 
REJECT message is received 

The procedure shall be aborted. 

c) T33 17 expired 

The procedure shall be aborted. 

d) SERVICE REJECT received other causes than those treated in section 4.7.X.4 
The procedure shall be aborted. 

e) Routing area update procedure is triggered 

If a cell change into a new routing area occurs and the necessity of routing area update procedure is determined 
before the security mode setting procedure is completed, a SERVICE ACCEPT or SERVICE REJECT message 
has been received, the Service request procedure shall be aborted and the routing area updating procedure is 
started immediately. Follow-on request pending may be indicated in the ROUTING AREA UPDATE REQUEST 
for the service, which was the trigger of the aborted Service request procedure, to restart the pending service 
ifself or the Service Request procedure after the completion of the routing area updating procedure. If the service 
type of the aborted SERVICE REQUEST was indicating "data", then the routing area update procedure may be 
followed by a re-initiated Service request procedure indicating "data", if it is still necessary. 

f) Power off 

If the MS is in state GMM-SER VICE-REQUEST-INITIATED at power off, the GPRS detach procedure shall be 
performed. 

g) Procedure collision 

If the MS receives a DETACH REQUEST message from the network in state GMM-SER VICE-REQUEST- 
INITIATED, the GPRS detach procedure shall be progressed and the Service request procedure shall be aborted. 
If the cause IE, in the DETACH REQUEST message, indicated a "reattach request", the GPRS attach procedure 
shall be performed. Follow-on request pending may be indicated in the ATTACH REQUEST for the service, 
which was the trigger of the aborted Service request procedure, to restart after the completion of the GPRS attach 
request procedure. 
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4.7.1 3.6 Abnormal cases on the network side 

The following abnormal cases can be identified: 

a) Lower layer failure 

If a low layer failure occurs before the security mode setting procedure is completed, a SERVICE ACCEPT or 
SERVICE REJECT message has been sent to the MS, the network stays in PMM-IDLE. 

b) Protocol error 

If the SERVICE REQUEST message is received with a protocol error, the network shall return a SERVICE 
REJECT message with one of the following reject causes: 

#96: Mandatory information element error; 

#99: Information element non-existent or not implemented; 

#100: Conditional IE error; 

#111: Protocol error, unspecified. 

The network stays in PMM-IDLE mode. 

c. 1 ) SERVICE REQUEST received 

If one or more of the information elements in the SERVICE REQUEST message differ from the ones received 
within the previous SERVICE REQUEST message, the previously initiated Service request procedure shall be 
aborted and the new Service request procedure shall be progressed, or 

If no information element differ, then the SERVICE ACCEPT message shall be resent. 

C.2) More than one SERVICE REQUEST received and the procedure has not been completed (i.e., the security 
mode setting procedure has not been completed or SERVICE ACCEPT, SERVICE REJECT message has not 
been sent). 

If one or more of the information elements in the SERVICE REQUEST message differs from the ones received 
within the previous SERVICE REQUEST message, the previously initiated Service request procedure shall be 
aborted and the new Service request procedure shall be progressed ; 

If the information elements do not differ, then the network shall continue with the previous Service request 
procedure and shall not treat any further this SERVICE REQUEST message. 

d) ATTACH REQUEST received before the security mode setting procedure has been completed or an SERVICE 
ACCEPT or an SERVICE REJECT message has been sent 

If an ATTACH REQUEST message is received and the security mode setting procedure has not been completed 
or an SERVICE ACCEPT or an SERVICE REJECT message has not been sent, the network may initiate the 
GMM common procedures, e.g. the GMM authentication and ciphering procedure. The network may e.g. after a 
succesful GMM authentication and ciphering procedure execution, abort the Service request procedure, the 
GMM context and PDP contexts, if any, are deleted and the new ATTACH REQUEST is progressed. 

e) ROUTING AREA UPDATE REQUEST message received before the security mode setting procedure has been 
completed or an SERVICE ACCEPT or an SERVICE REJECT message has been sent 

If an ROUTING AREA UPDATE REQUEST message is received and the security mode setting procedure has 
not been completed or an SERVICE ACCEPT or an SERVICE REJECT message has not been sent, the network 
may initiate the GMM common procedures, e.g. the GMM authentication and ciphering procedure. The network 
may e.g. after a successful GMM authentication and ciphering procedure execution, abort the Service request 
procedure and progress the routing area update procedure. 
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5 Elementary procedures for circuit-switched Call 

Control 

5.1 Overview 
5.1.1 General 

This section describes the call control (CC) protocol, which is one of the protocols of the Connection Management 
(CM) sublayer (see TS 24.007). 

Every mobile station must support the call control protocol. If a mobile station does not support any bearer capability at 
all then it shall respond to a SETUP message with a RELEASE COMPLETE message as specified in section 5.2.2.2. 

In the call control protocol, more than one CC entity are defined. Each CC entity is independent from each other and 
shall communicate with the correspondent peer entity using its own MM connection. Different CC entities use different 
transaction identifiers. 

With a few exceptions this Technical Specification describes the call control protocol only with regard to two peer 
entities. The call control entities are described as communicating finite state machines which exchange messages across 
the radio interface and communicate internally with other protocol (sub)layers. This description is only normative as far 
as the consequential externally observable behaviour is concerned. 

Certain sequences of actions of the two peer entities compose "elementary procedures" which are used as a basis for the 
description in this section. These elementary procedures may be grouped into the following classes: 

call establishment procedures; 

call clearing procedures; 

call information phase procedures; 

miscellaneous procedures. 

The terms "mobile originating" or "mobile originated" (MO) are used to describe a call initiated by the mobile station. 
The terms "mobile terminating" or "mobile terminated" (MT) are used to describe a call initiated by the network. 

Figure 5.1a/TS 24.008 gives an overview of the main states and transitions on the mobile station side. 

The MS side extension figure 5.1a.l/TS 24.008 shows how for the Network Initiated MO call the MS reaches state ULO 
from state UO $(CCBS)$. 

Figure 5.1b/TS 24.008 gives an overview of the main states and transitions on the network side. 

The Network side extension figure 5.1b. 1/TS 24.008 shows for Network Initiated MO Calls the Network reaches state 
Nl.O from state NO $(CCBS)$. 
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Figure 5.1a/TS 24.008 
Overview call control protocol/MS side 
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Figure5.1a.1/TS 24.008 
Overview call control protocol/MS side, extension: 
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Figure 5.1b/TS 24.008 Overview call control protocol/Network side 
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Figure 5.1b.1/TS 24.008 Overview call control protocol/Network side, extension: 

5.1.2 Call Control States 

5.1 .2.1 Call states at the mobile station side of the interface 

The states which may exist on the mobile station side of the radio interface are defined in this section. 

NOTE: States UO. 1, U0.2, U0.3, U0.4, U0.5, U0.6, U26, and U27 are GSM specific. All other states are ITU-T 
defined. 



5.1.2.1.1 
No call exists. 



Null (State UO) 



5.1.2.1.2 MM Connection pending (U0.1) 

This state exists for a mobile originating call, when the mobile station requests the establishment of a MM connection. 
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5.1 .2.1 .2a CC prompt present (U0.2) $(CCBS)$ 

This state exists for a mobile originating call when the network has prompted the mobile station to establish a CC 
connection but the mobile station has not yet responded. 

NOTE: This state is transient. 

5.1 .2.1 .2b Wait for network information (DO. 3) $(CCBS)$ 

This state exists for a mobile originating call when the mobile station has responded to the prompt from the network to 
establish a CC connection and the mobile station is waiting for further information from the network. 

5.1 .2.1 .2c CC-Establishment present (U0.4) $(CCBS)$ 

This state exists for a mobile originating call when the mobile station has received a CC-establishment request but has 
not yet responded. 

NOTE: This state is transient. 

5.1 .2.1 .2d CC-Establishment confirmed (U0.5) $(CCBS)$ 

This state exists for a mobile originating call when the mobile station has sent the acknowledgement that the mobile 
station has received all the CC information that is needed. 

5.1 .2.1 .2e Recall present (U0.6) $(CCBS)$ 

This state exists for a mobile originating call when the mobile station has received a recall request but has not yet 
responded. 

NOTE: This state is transient. 

5.1.2.1.3 Call initiated (U1) 

This state exists for a mobile originating call, when the MS requests call establishment from the network. 

5.1 .2.1 .4 Mobile originating call proceeding (U3) 

This state exists for a mobile originating call when the mobile station has received acknowledgement that the network 
has received all call information necessary to effect call establishment. 

5.1.2.1.5 Call delivered (U4) 

This state exists for a mobile originating call, when the calling mobile station has received an indication that remote 
user alerting has been initiated. 

5.1.2.1.6 Call present (U6) 

This state exists for a mobile terminating call when the mobile station has received a call establishment request but has 
not yet responded. 

5.1.2.1.7 Call received (U7) 

This state exists for a mobile terminating call when the mobile station has indicated alerting but has not yet answered. 

5.1.2.1.8 Connect Request (U8) 

This state exists for a mobile terminating call, when the mobile station has answered the call and is waiting to be 
awarded the call. 
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5.1 .2.1 .9 Mobile terminating call confirmed (U9) 

This state exists for a mobile terminating call when the mobile station has sent acknowledgement that the mobile station 
has received all call information necessary to effect call establishment. 

5.1.2.1.10 Active (U10) 

This state exists for a mobile terminating call when the MS has answered the call. This state exists for a mobile 
originating call when the MS has received an indication that the remote user has answered the call. 

5.1.2.1.11 Disconnect request (U11) 

This state exists when the mobile station has requested the network to clear the end-to-end connection (if any) and is 
waiting for a response. 

5.1.2.1.12 Disconnect indication (U12) 

This state exists when the mobile station has received an invitation to disconnect because the network has disconnected 
the end-to-end connection (if any). 

5.1.2.1.13 Release request (U1 9) 

This state exists when the MS has requested the network to release and is waiting for a response. 

5.1.2.1.14 Mobile originating modify (U26) 

This state exists when the mobile station has sent a request to the network for a new mode but has not yet received an 
answer. 

5.1 .2.1 .1 5 Mobile terminating modify (U27) 

This state exists when the mobile station has received a request from the network for a new mode and has not yet sent a 
response to this request. 

5.1.2.2 Network call states 

NOTE: States NO.l, N0.2, N0.3, N0.4, N0.5, N0.6, N26, N27, N28, N3a, N4,a, N7a, and N9a are GSM specific. 
All other states are CCITT defined. 

The call states that may exist on the network side of the radio interface are defined in this section. 

5.1.2.2.1 Null (State NO) 

No call exists. 

5.1 .2.2.2 MM connection pending (NO.l) 

This state exists for a mobile terminating call, when the network requests the establishment of a MM connection. 

5.1 .2.2.2a CC connection pending (N0.2) $(CCBS)$ 

This state exists for a mobile originating call when the network has requested the mobile station to establish a CC 
connection. 

5.1 .2.2.2b Network answer pending (NO. 3) $(CCBS)$ 

This state exists for a mobile originating call when the mobile station has established a CC connection upon the request 
of the network, but the network has not yet informed the mobile station of the reason for the network's action. 
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5.1 .2.2.2c CC-Establishment present (N0.4) $(CCBS)$ 

This state exists for a mobile originating call when the network has sent a CC establishment request but has not yet 
received a satisfactory response. 

5.1 .2.2.2d CC-Establishment confirmed (N0.5) $(CCBS)$ 

This state exists for a mobile originating call when the network has received acknowledgement that the mobile station 
has received all call information necessary to effect call establishment. 5. 1.2.2.2e Recall present (N0.6) $(CCBS)$ 

This state exists for a mobile originating call when the network has sent a recall request but has not yet received a 
satisfactory response. 

5.1.2.2.3 Call initiated (N1) 

This state exists for a mobile originating call when the network has received a call establishment request but has not yet 
responded. 

5.1 .2.2.4 Mobile originating call proceeding (N3) 

This state exists for a mobile originating call when the network has sent acknowledgement that the network has 
received all call information necessary to effect call establishment. 

5.1.2.2.5 Call delivered (N4) 

This state exists for a mobile originating call when the network has indicated that remote user alerting has been 
initiated. 

5.1.2.2.6 Call present (N6) 

This state exists for a mobile terminating call when the network has sent a call establishment request but has not yet 
received a satisfactory response. 

5.1.2.2.7 Call received (N7) 

This state exists for a mobile terminating call when the network has received an indication that the mobile station is 
alerting but has not yet received an answer. 

5.1 .2.2.8 Connect request (N8) 

This state exists for a mobile terminating call when the network has received an answer but the network has not yet 
awarded the call. 

5.1 .2.2.9 Mobile terminating call confirmed (N9) 

This state exists for a mobile terminating call when the network has received acknowledgement that the mobile station 
has received all call information necessary to effect call establishment. 

5.1.2.2.10 Active (N10) 

This state exists for a mobile terminating call when the network has awarded the call to the called mobile station. This 
state exists for a mobile originating call when the network has indicated that the remote user has answered the call. 

5.1.2.2.11 Not used 

5.1.2.2.12 Disconnect indication (N12) 

This state exists when the network has disconnected the end- to-end connection (if any) and has sent an invitation to 
disconnect the mobile station to network connection. 
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5.1.2.2.13 Release request (N 19) 

This state exists when the network has requested the MS to release and is waiting for a response. 

5.1 .2.2.14 Mobile originating modify (N26) 

This state exists when the network has received a request from the mobile station for a new mode but has not yet sent a 
response. 

5.1 .2.2.1 5 Mobile terminating modify (N27) 

This state exists when the network has sent a request to the mobile station for a new mode but has not yet received an 
answer. 

5.1 .2.2.1 6 Connect Indication (N28) 

This state exists for a mobile originating call when the network has indicated that the remote user has answered the call 
and the network is waiting for acknowledgement by the mobile station. 

5.2 Call establishment procedures 

Establishment of a call is initiated by request of upper layer in either the mobile station or the network; it consists of: 

the establishment of a CC connection between the mobile station and the network; 

the activation of the codec or interworking function. 

Whenever it is specified in TS 24.008, section 5 that the mobile station shall attach the user connection, this means that 
the mobile station shall activate the codec or interworking function as soon as an appropriate channel is available. The 
mobile station shall de-activate the codec or interworking function whenever an appropriate channel is no longer 
available. As soon as an appropriate channel is (again) available, the codec or interworking function shall be re- 
activated. If a new order to attach the user connection is received, the new order shall supersede the previous one. 

A channel shall be considered as appropriate if it is consistent with the possibly negotiated bearer capability applicable 
for the actual phase of the call. The mobile station shall not consider a channel as not appropriate because the type of 
the channel (full rate/half rate) is not the preferred one. If: 

the user connection has to be attached but no appropriate channel is available for a contiguous time of 30 
seconds; or if 

the codec or interworking function is de-activated for a contiguous time of 30 seconds; 

then the mobile station may initiate call clearing. 

Upon request of upper layers to establish a call, restricting conditions for the establishment of the call are examined. 
These restricting conditions concern the states of parallel CC entities and are defined elsewhere. If these restricting 
conditions are fulfilled, the call establishment is rejected. Otherwise a CC entity in state UO, "null", is selected to 
establish the call. It initiates the establishment by requesting the MM sublayer to establish an MM connection. 



5.2.1 Mobile originating call establishment 



The call control entity of the mobile station initiates establishment of a CC connection by requesting the MM sublayer 
to establish a mobile originating MM connection and entering the "MM connection pending" state. There are two kinds 
of a mobile originating call: basic call and emergency call. The request to establish an MM connection shall contain a 
parameter to specify whether the call is a basic or an emergency call. This information may lead to specific qualities of 
services to be provided by the MM sublayers. Timer T303 is started when the CM SERVICE REQUEST message is 
sent. 

For mobile stations supporting eMLPP basic calls may optionally have an associated priority level as defined in 
GSM 03.67. This information may also lead to specified qualities of service to be provided by the MM sublayers. 

While being in the "MM connection pending" state, the call entity of the mobile station may cancel the call prior to 
sending the first call control message according to the rules given in section 4.5.1.7. 
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Having entered the "MM connection pending" state, upon MM connection establishment, the call control entity of the 
mobile station sends a setup message to its peer entity. This setup message is 

a SETUP message, if the call to be established is a basic call, and 

an EMERGENCY SETUP message, if the call to be established is an emergency call. 

It then enters the "call initiated" state. Timer T303 is not stopped. 

The setup message shall contain all the information required by the network to process the call. In particular, the 
SETUP message shall contain the called party address information. 

If timer T303 elapses in the "MM connection pending" state, the MM connection in progress shall be aborted and the 
user shall be informed about the rejection of the call. 

5.2.1.1 Call initiation 

The "call initiated" state is supervised by timer T303.For normal MO calls, this timer will have already been started 
after entering the "MM connection pending" state. For network-initiated MO calls this timer will be started in the recall 
present state as defined in section 5.2.3.4 

When the call control entity of the mobile station is in the "call initiated" state and if it receives: 

i) a CALL PROCEEDING message, it shall proceed as described in section 5.2. L3; 

ii) an ALERTING message, it shall proceed as described in section 5.2. L5; 

iii) a CONNECT message, it shall proceed as described in section 5.2. L6; 

iv) a RELEASE COMPLETE message it shall proceed as described in section 5.2.1.2. 

Abnormal case: 

- If timer T303 elapses in the "call initiated" state before any of the CALL PROCEEDING, ALERTING, 
CONNECT or RELEASE COMPLETE messages has been received, the clearing procedure described in 
section 5.4 is performed. 

5.2.1.2 Receipt of a setup message 

In the "null" or "recall present" states, upon receipt of a setup message (a SETUP message or an EMERGENCY 
SETUP message, see section 5.2. LI), the call control entity of the network enters the "call initiated" state. It shall then 
analyse the call information contained in the setup message. 

i) If, following the receipt of the setup message, the call control entity of the network determines that the call 
information received from the mobile station is invalid (e.g. invalid number), then the network shall initiate call 
clearing as defined in section 5.4 with one of the following cause values: 

# 1 "unassigned (unallocated) number" 

# 3 "no route to destination" 

# 22 "number changed" 

# 28 "invalid number format (incomplete number)" 

ii) If, following the receipt of the setup message, the call control entity of the network determines that a requested 
service is not authorized or is not available, it shall initiate call clearing in accordance with section 5.4.2 with 
one of the following cause values: 

# 8 "operator determined barring", 

# 57 "bearer capability not authorized", 

# 58 "bearer capability not presently available", 

# 63 "service or option not available, unspecified", or 
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# 65 "bearer service not implemented". 

iii) Otherwise, the call control entity of the network shall either: 

send a CALL PROCEEDING message to its peer entity to indicate that the call is being processed; and enter 
the "mobile originating call proceeding" state. 

or: send an ALERTING message to its peer entity to indicate that alerting has been started at the called user 
side; and enter the "call received" state. 

or: send a CONNECT message to its peer entity to indicate that the call has been accepted at the called user 
side; and enter the "connect request" state. 

The call control entity of the network may insert bearer capability information element(s) in the CALL 
PROCEEDING message to select options presented by the mobile station in the Bearer Capability information 
element(s) of the SETUP message. The bearer capability information element(s) shall contain the same 
parameters as received in the SETUP except those presenting a choice. Where choices were offered, appropriate 
parameters indicating the results of those choices shall be included. 

The CALL_PROCEEDING message may also contain the priority of the call in the case where eMLPP is 
applied and where the network has assigned a different priority to the call than that requested by the user, or 
where the user has not requested a priority and the network has assigned a default priority. Mobile stations 
supporting eMLPP shall indicate this priority level to higher sublayers and store this information for the duration 
of the call for further action. Mobile stations not supporting eMLPP shall ignore this information element if 
provided in a CALL PROCEEDING message. 

The call control entity of the network having entered the "mobile originating call proceeding" state, the network may 
initiate the assignment of a traffic channel according to section 5.2.1.9 (early assignment). 



Network 




CALL_PROCEEDING 
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CONNECT 
RELEASE COMPLETE 



(i) 
(ii) 
(iii) 
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Figure 5.2/TS 24.008 Mobile originated call initiation and possible subsequent responses. 



5.2.1.3 



Receipt of a CALL PROCEEDING message 



Having entered the "call initiated" state, when the call control entity of the mobile station receives a CALL 
PROCEEDING message, it shall stop timer T303; start timer T310 unless 

the CALL PROCEEDING message contains a progress indicator IE specifying progress description #1, #2, or 
#64; or 

it has received a PROGRESS message containing a progress indicator IE specifying progress description #1, #2, 
or #64 prior to the CALL PROCEEDING message 

and enter the "mobile originating call proceeding" state. 

Abnormal case: 

If timer T310 elapses before any of the ALERTING, CONNECT or DISCONNECT messages has been received, 
the mobile station shall perform the clearing procedure described in section 5.4. 
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Figure 5.3/TS 24.008 Call proceeding sequence at mobile originating call establishment 

5.2.1 .4 Notification of progressing mobile originated call 

In this section, the term "interworking" is used only in the meaning of interworking with a network other than PLMN or 
ISDN, not as interworking between PLMN and ISDN since this is the normal case. In this sense, PLMN and ISDN are 
seen within the same environment, called the PLMN/ISDN environment. 

5.2.1 .4.1 Notification of interworking in connection with mobile originated call establishment 

During call establishment, the call may leave a PLMN/ISDN environment; e.g., because of interworking with another 
network, with a non-PLMN/ISDN user, or with non-PLMN/ISDN equipment within the called user's premises; the call 
may also return to a PLMN/ISDN environment. When such situations occur, the network may send a progress indicator 
information element to the calling mobile station either: 

a) in an appropriate call control message, if a state change is required (e.g. ALERTING or CONNECT); or, 

b) in the PROGRESS message, if no state change is appropriate. 

This progress indicator information element shall contain one of the following progress description values: 

a) #1 "call is not end-to-end PLMN/ISDN; further call progress information may be available in-band". 

b) #2 "destination address is non-PLMN/ISDN". 

c) #4 "call has returned to PLMN/ISDN. 

See also sections 5.5.1 and 5.5.6 for further reactions of the mobile station. 

5.2.1 .4.2 Call progress in the PLMN/ISDN environment 

In order to inform the mobile station that the call is progressing in the PLMN/ISDN environment the network may send 
a progress indicator information element to the calling mobile station either: 

a) in an appropriate call control message, if a state change is required (e.g., ALERTING or CONNECT); or 

b) in the PROGRESS message, if no state change is appropriate. 

Tids progress indicator information element shall contain progress description value #32 "Call is end-to-end 
ISDN/PLMN". See also section 5.5.6 for further reactions of the mobile station. 

5.2.1.5 Alerting 

Having entered the "mobile originating call proceeding" state, upon receiving an indication that user alerting has been 
initiated at the called address, the call control entity of the network shall: send an ALERTING message to its peer 
entity at the calling mobile station and enter the "call delivered" state. 

When the call control entity of the mobile station in the "call initiated" state or "mobile originating call proceeding" 
state receives an ALERTING message then, the call control entity of the mobile station shall stop timer T303 and T310 
(if running) and shall enter the "call delivered" state. In this state, for speech calls: 

an alerting indication should be given to the user. If the mobile station has not attached the user connection then 
the mobile station shall internally generate an alerting indication. If the mobile station has attached the user 
connection then the network is responsible for generating the alerting indication and the mobile station need not 
generate one. 

Abnormal cases: 
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On the mobile station side, if timer T310 expires, the call control entity of the mobile station shall initiate call 
clearing as described in section 5.4. 

MS Network 
+ + 

ALERTING 
< 

Figure 5.4/TS 24.008 Call confirmation at mobile originating call establishment 

5.2.1.6 Call connected 

Upon receiving an indication that the call has been accepted, the call control entity of the network shall: through 
connect the traffic channel (including the connection of an interworking function, if required) and send a CONNECT 
message to its peer entity at the calling mobile station; start timer T313 and enter the "connect indication" state. 

This message indicates to the call control entity of the calling mobile station that a connection has been established 
through the network. 

The call control entity of the mobile station in the "call initiated" state, in the "mobile originating call proceeding" state 
or in the "call delivered" state, shall, upon receipt of a CONNECT message: 

attach the user connection; 

- return a CONNECT ACKNOWLEDGE message; 

stop any locally generated alerting indication (if applied); 

stop timer T303 and T3 10 (if running); 

enter the "active" state. 

Abnormal cases: 

On the mobile station side, if timer T303 or T310 expires, the call control entity of the mobile station shall 
initiate call clearing as described in section 5.4. 

NOTE: The mobile station may have applied an additional internal alerting supervision which causes initiation of 
call clearing prior to the expiry of T303 or T3 10. 

The call control of the network in the "connect indication" state, shall, upon receipt of a CONNECT ACKNOWLEDGE 

message: 

stop timer T313 and enter the "active" state. 

Abnormal cases: 

On the network side, if timer T313 elapses before a CONNECT ACKNOWLEDGE message has been received, 
the network shall perform the clearing procedure as described in section 5.4. 

MS Network 

+ + 

CONNECT 
< 

CONNECT ACKNOWLEDGE 
> 

Figure 5.5/TS 24.008 Call acceptance sequence at mobile originating call establishment 

5.2.1.7 Call rejection 

Upon receiving an indication that the network or the called user is unable to accept the call, the network shall initiate 
call clearing at the radio interface to the mobile which originated the call, as described in section 5.4 using the cause 
provided by the terminating network or the called user. 
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5.2.1 .8 Transit network selection 

NOTE: For further study. 

5.2.1 .9 Traffic channel assignment at mobile originating call establishment 

It is a network dependent decision when to initiate the assignment of an appropriate traffic channel during the mobile 
originating call establishment phase. Initiation of a suitable RR procedure to assign an appropriate traffic channel does 
neither change the state of a call control entity nor affect any call control timer. 

NOTE: During certain phases of such an RR procedure, transmission of CC and MM messages may be 
suspended, see GSM 04.18, section 3 and GSM 08.08. 

The assignment procedure does not affect any call control timer. 

5.2.1 .10 Call queuing at mobile originating call establishment 

The conditions to apply queuing are described in GSM 03.01. 

If an idle traffic channel is not available at the assignment instant, the network may place the traffic channel request in a 
queue. Calls arriving when all positions in the queue are occupied shall be cleared by the network using the cause #34 
"no circuit/channel available". 

The maximum queuing interval is supervised by the network. The limit is a network dependent choice. In case the 
network is not able to allocate a traffic channel within the queuing limit, the network will release the call using cause 
#34 "no circuit/channel available". 

Optionally, e.g. if eMLPP is used, the network may decide to pre-empt existing calls or to place the traffic channel 
request at some preferential position within the queue. 

Specific indications provided in the network to the remote user are a network dependent choice. 

5.2.2 Mobile terminating call establishment 

Before call establishment can be initiated in the mobile station, the MM connection must be established by the network. 

5.2.2.1 Call indication 

After the arrival of a call from a remote user, the corresponding call control entity in the network shall: initiate the MM 
connection establishment according to section 4 and enter the "MM connection pending" state. The request to establish 
the MM connection is passed from the CM sublayer to the MM sublayer. It contains the necessary routing information 
derived from the SETUP message. 

Upon completion of the MM connection, the call control entity of the network shall: send the SETUP message to its 
peer entity at the mobile station, start timer T303 and enter the "call present" state. 

Upon receipt of a SETUP message, the mobile station shall perform compatibility checking as described in 5.2.2.2. If 
the result of the compatibility checking was compatibility, the call control entity of the mobile station shall enter the 
"call present" state. An incompatible mobile station shall respond with a RELEASE COMPLETE message in 
accordance with section 5.2.2.3.4. 

If no response to the SETUP message is received by the call control entity of the network before the expiry of timer 
T303, the procedures described in section 5.2.2.3.3 shall apply. 
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Figure 5.6/TS 24.008 Mobile terminating call initiation and possible subsequent responses. 



5.2.2.2 



Compatibility checking 



The mobile station receiving a SETUP message shall perform compatibility checking before responding to that SETUP 
message. Annex B defines compatibility checking to be performed by the mobile station upon receiving a SETUP 
message. 



5.2.2.3 



Call confirmation 



5.2.2.3.1 



Response to SETUP 



Having entered the "call present state" the call control entity of the mobile station shall - with the exception of the cases 
described below - acknowledge the SETUP message by a CALL CONFIRMED message, and enter the "mobile 
terminating call confirmed" state. 

The call control entity of the mobile station may include in the CALL CONFIRMED message to the network one or 
two bearer capability information elements to the network, either preselected in the mobile station or corresponding to a 
service dependent directory number (see TS 29.007). The mobile station may also include one or two bearer capabilities 
in the CALL CONFIRMED message to define the radio channel requirements. In any case the rules specified in section 
9.3.2.2 shall be followed. 

NOTE: The possibility of alternative responses (e.g., in connection with supplementary services) is for further 
study. 

A busy MS which satisfies the compatibility requirements indicated in the SETUP message shall respond either with a 
CALL CONFIRMED message if the call setup is allowed to continue or a RELEASE COMPLETE message if the call 
setup is not allowed to continue, both with cause #17 "user busy". 

If the mobile user wishes to refuse the call, a RELEASE COMPLETE message shall be sent with the cause #21 "call 
rejected" . 

In the cases where the mobile station responds to a SETUP message with RELEASE COMPLETE message the mobile 
station shall release the MM connection and enter the "null" state after sending the RELEASE COMPLETE message. 

The network shall process the RELEASE COMPLETE message in accordance with section 5.4. 



5.2.2.3.2 



Receipt of CALL CONFIRMED and ALERTING by the network 



The call control entity of the network in the "call present" state, shall, upon receipt of a CALL CONFIRMED message: 
stop timer T303, start timer T310 and enter the "mobile terminating call confirmed" state. 

The call control entity of the mobile station having entered the "mobile terminating call confirmed" state, if the call is 
accepted at the called user side, the mobile station proceeds as described in 5.2.2.5. Otherwise, if the signal information 
element was present in the SETUP message user alerting is initiated at the mobile station side; if the signal information 
element was not present in the SETUP message, user alerting is initiated when an appropriate channel is available. 

Here, initiation of user alerting means: 

the generation of an appropriate tone or indication at the mobile station; and 

sending of an ALERTING message by the call control entity of the MS to its peer entity in the network and 
entering the "call received" state. 
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The call control entity of the network in the "mobile terminated call confirmed" state shall, upon receipt of an 
ALERTING message: send a corresponding ALERTING indication to the calling user; stop timer T310; start timer 
T301, and enter the "call received" state. 

In the "mobile terminating call confirmed" state or the "call received" state, if the user of a mobile station is User 
Determined User Busy then a DISCONNECT message shall be sent with cause #17 "user busy". In the "mobile 
terminating call confirmed" state, if the user of a mobile station wishes to reject the call then a DISCONNECT message 
shall be sent with cause #21 "call rejected". 

5.2.2.3.3 Call failure procedures 

In case of abnormal behaviour the following call failure procedures apply: 

i. If the network does not receive any response to the SETUP message prior to the expiration of timer T303, then 
the network shall: initiate clearing procedures towards the calling user with cause #18 "no user responding"; and 
initiate clearing procedures towards the called mobile station in accordance with 5.4.4 using cause #102 
"recovery on timer expiry". 

ii. If the network has received a CALL CONFIRMED message, but does not receive an ALERTING, CONNECT 
or DISCONNECT message prior to the expiration of timer T310, then the network shall: 

initiate clearing procedures towards the calling user with cause #18 "no user responding"; and 

initiate clearing procedures towards the called MS in accordance with section 5.4.4 using cause #102 
"recovery on timer expiry". 

iii. If the network has received an ALERTING message, but does not receive a CONNECT or DISCONNECT 

message prior to the expiry of timer T301 (or a corresponding internal alerting supervision timing function), then 
the network shall: initiate clearing procedures towards the calling user with cause #19 "user alerting, no answer"; 
and initiate clearing procedures towards the called mobile station in accordance with section 5.4.4, using cause 
#102 "recovery on timer expiry" or using cause #31 "normal, unspecified". 

NOTE: The choice between cause #31 and cause #102 may have consequences on indications generated by the 
mobile station, see GSM 02.40. 

5.2.2.3.4 Called mobile station clearing during mobile terminating call establishment 

See section 5.4.2. 

5.2.2.4 Notification of interworking in connection with mobile terminating call 
establishment 

In this section, the term "interworking" is used only in the meaning of interworking with a network other than PLMN or 
ISDN, not as interworking between PLMN and ISDN since this is the normal case. In this sense, PLMN and ISDN are 
seen within the same environment, called the PLMN/ISDN environment. 

During call establishment the call may enter an PLMN/ISDN environment, e.g., because of interworking with another 
network, with a non-PLMN/ISDN user, or with non-PLMN/ISDN equipment within the calling or called user's 
premises. When this occurs, the network may include a progress indicator information element to be included in the 
SETUP message to be sent to the called mobile station specifying progress description value 

a) #1 "call is not end-to-end PLMN/ISDN; further call progress information may be available in-band" or 

b) #3 "origination address is non-PLMN/ISDN". 

See also section 5.5.1 for further reactions of the mobile station. 

5.2.2.5 Call accept 

In the "mobile terminating call confirmed" state or the "call received" state, the call control entity in the mobile station 
indicates acceptance of a mobile terminating call by: 

- sending a CONNECT message to its peer entity in the network; 

- starting Timer T313; and 
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- entering the "connect request" state. 

5.2.2.6 Active indication 

In the "mobile terminated call confirmed" state or in the "call received" state, the call control entity of the network shall, 
upon receipt of a CONNECT message: through connect the traffic channel (including the connection of an 
interworking function, if required), stop timers T310, T303 or T301 (if running); send a CONNECT ACKNOWLEDGE 
message to its peer entity at the mobile station of the called user; initiate procedures to send a CONNECT message 
towards the calling user and enter the "active" state. 

In the "connect request" state, the call control entity of the mobile station shall, upon receipt of a CONNECT 
ACKNOWLEDGE message: stop timer T313 and enter the "active" state. 

When timer T313 expires prior to the receipt of a CONNECT ACKNOWLEDGE message, the mobile station shall 
initiate clearing in accordance with section 5.4.3. 

MS Network 

CONNECT 
> 

CONNECT ACKNOWLEDGE 
< 

+ + 

Figure 5.7/TS 24.008 Call acceptance and active indication at mobile terminating call establishment 

5.2.2.7 Traffic channel assignment at mobile terminating call establishment 

It is a network dependent decision when to initiate the assignment of a traffic channel during the mobile terminating call 
establishment phase. 

Initiation of the assignment phase does not directly change the state of a CC entity nor affect any call control timer, but 
may have some secondary effects (see e.g. clause 5.2.2.3.2). 

5.2.2.8 Call queuing at mobile terminating call establishment 

The principles described in section 5.2. L 10 apply accordingly. 

NOTE: The interworking to the fixed network has to fulfil the network specific requirements. 

5.2.2.9 User connection attachment during a mobile terminating call 

For speech calls: 

The mobile station shall attach the user connection at latest when sending the connect message. 

For data calls: 

The mobile station shall attach the user connection when receiving the CONNECT ACKNOWLEDGE message 
from the network. 

5.2.3 Network initiated MO call $(CCBS)$ 

The procedures of section 5.2.3 are mandatory for mobile stations supporting "Network initiated MO call". 

NOTE: The behaviour of a mobile station that does not support "Network initiated MO call" is described in 
section 4. 

5.2.3.1 Initiation 

Before call establishment can be initiated in the mobile station, the MM connection shall be established by the network. 

After the arrival of an appropriate stimulus (for example a Remote User Free Indication), the corresponding call control 
entity in the network shall initiate the MM connection establishment according to section 4, enter the "CC connection 
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pending" state and start timer T33 1 . The request to establish the MM connection is passed from the CM sublayer to the 
MM sublayer. It contains the necessary routing information derived from the received stimulus. 

Upon completion of the MM connection, the call control entity of the mobile station shall send a START CC message 
to its peer entity in the network. The mobile station shall then enter the "Wait for network information" state and start 
timer T332. 

If the network receives a START CC message while in the "CC connection pending" state, the network stops T33 1 , 
sends the CC-ESTABLISHMENT message, starts timer T333 and enters the "CC-establishment present" state. 

The MM connection establishment may be unsuccessful for a variety of reasons, in which case the MM sublayer in the 
network will inform the CC entity in the network with an indication of the reason for the failure. The CC entity shall 
then stop all running timers, enter the "Null" state and inform all appropriate entities within the network. 

If timer T331 expires, the network shall abort the MM connection establishment attempt, stop all running CC timers, 
enter the "Null" state and inform all appropriate entities within the network. 

5.2.3.2 CC-Establishment present 

In the "CC establishment present" state, the mobile station, upon receipt of the CC-ESTABLISHMENT message, shall 
stop timer T332. 

The CC-ESTABLISHMENT message contains information which the mobile station shall use for the subsequent 
SETUP message (if any) related to this CC-ESTABLISHMENT. 

The CC-ESTABLISHMENT message shall contain the Setup Container IE. 

If no CC-ESTABLISHMENT message is received by the call control entity of the mobile station before the expiry of 
timer T332, then the mobile station shall initiate clearing procedures towards the network using a RELEASE 
COMPLETE message with cause #102 "recovery on timer expiry" and proceed in accordance with section 5.4.2. 

Upon receipt of a CC-ESTABLISHMENT message the mobile station shall perform checks on the Setup Container IE 
in order to align the contained information with the mobile's present capabilities and configuration. The "recall 
alignment procedure" is defined later on in this section. 

If the recall alignment procedure has succeeded, the call control entity of the Mobile Station shall: 
form and store the SETUP message for sending later in the "Recall present" state, 
- acknowledge the CC-ESTABLISHMENT message with a CC-ESTABLISHMENT CONFIRMED message, 
start timer T335, and 
enter the "CC-establishment confirmed" state. 

Exception: 

A busy mobile station which has successfully performed the recall alignment procedure shall respond with a CC- 
ESTABLISHMENT CONFIRMED message with cause #17 "user busy", and proceed as stated above. 

A mobile station, for which the recall alignment procedure failed, shall respond with a RELEASE COMPLETE 
message in accordance with section 5.4.2 with the appropriate cause code as indicated in the description of the recall 
alignment procedure. 

The SETUP message is constructed from the Setup Container IE received in the CC ESTABLISHMENT MESSAGE. 
The mobile station shall assume that the Setup Container IE contains an entire SETUP message with the exception of 
the Protocol Discriminator, Transaction ID and Message Type elements. The mobile station may assume that the 
contents of the Setup Container IE are the same as were sent from the subscriber in a previous SETUP message of the 
mobile originating call establishment attempt. The mobile station shall copy the Setup Container to the SETUP message 
and not modify the contents except as defined in the recall alignment procedure and as defined in exceptions below. The 
mobile station shall not add other Information Elements to the end of the SETUP message. 

Exceptions: 

Bearer Capability IE(s), HLC IE(s) and LLC (s) IE(s) (including Repeat Indicator(s), if there are 2 bearer 
capabilities) require handling as described in the recall alignment procedure below. 
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If the CC Capabilities in the Setup Container IE is different to that supported by the mobile station, the mobile 
station shall modify the CC Capabilities in the SETUP message to indicate the true capabilities of the mobile 
station. 

Facility IE(s) and SS Version IE(s) require handling as described in the recall alignment procedure. 

If no response to the CC -ESTABLISHMENT message is received by the call control entity of the network before the 
expiry of timer T333, then the network shall initiate clearing procedures towards the called mobile station using a 
RELEASE COMPLETE message with cause #102 "recovery on timer expiry" and inform all appropriate entities within 
the network, proceeding in accordance with section 5.4.2. 
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CC-ESTABLISHMENT_CONFIRMED 
RELEASE COMPLETE 
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(ii) 



Figure 5.7a/TS 24.008 Call initiation and possible subsequent responses. 

5.2.3.2.1 Recall Alignment Procedure 

The recall alignment procedure consists of two parts : 

- basic service group alignment, and 

facility alignment. 

Basic service group alignment: 

The mobile station shall check that the Bearer Capability, HLC and LLC and Repeat Indicator fields, which are 
embedded in the Setup Container IE, match a basic service group supported by the mobile station. 

If this check fails, then the recall alignment procedure has failed. The mobile station shall use the cause #88 
"incompatible destination" afterwards. 

Otherwise, the mobile station is allowed to alter the content within the Bearer Capability, HLC and LLC Information 
Elements (e.g. the speech coder version(s), the data rate, the radio channel requirement) provided that the basic service 
group is not changed. The result shall be that the mobile station has derived Bearer Capability, HLC and LLC 
Information Elements, which it can use for a later call setup according to its configuration and capabilities. 

Facility alignment: 

This only applies if the Setup Container contains 1 or more Facility lEs. Each Facility IE within the Setup 
Container will be associated with the common SS Version IE, if present. The handling for each Facility IE is 
defined below. The mobile station shall align each facility IE contained in the Setup Container. The rules 
defined in GSM 04.10 also apply. 

The Facility IE is encoded as 'simple recall alignment', 'advanced recall alignment' or 'recall alignment not essential' 
(see GSM 04.10). If the encoding indicates, that 

a simple recall alignment is required, the mobile station shall copy the Facility IE and the common SS version IE 
from the Setup Container to the SETUP message without modifying the content. 

an advanced recall alignment is required, the mobile station must recognise and support the operation defined in 
the facility. If the mobile station does not recognise or support the operation, then the recall alignment procedure 
has failed and the mobile station shall use the cause #29 "facility rejected" in the subsequent rejection of the CC 
establishment request. 

the recall alignment is not essential, then the facility operation is not an essential part of the SETUP. If the MS 
does not recognise the operation then the SS Version IE and Facility IE are discarded, and NOT copied into the 
SETUP message. 
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NOTE. A mobile station may include a Facility IE without an associated SS Version IE. This would indicate that the 
SS operation is encoded using Phase 1 protocols. 

Further details on Facility handling are given in GSM 04.10 

5.2.3.3 CC-Establishment confirmation 

The call control entity of the network in the "CC-establishment present" state, shall, upon receipt of a CC- 
ESTABLISHMENT CONFIRMED message, stop timer T333 and enter the "CC-establishment confirmed" state. 

In the "CC-establishment confirmed" state, the network sends a RECALL message. This message initiates user alerting 
and also shall include the Facility IE (providing additional information to be presented to the user for notification). The 
network starts timer T334 and enters the 'recall present' state. 

Upon reception of the RECALL message the Mobile station stops T335 and enters the "recall present" state. 

MS Network 
+ + 

RECALL 



Figure 5.7b/TS 24.008 Recall 

5.2.3.4 Recall present 

In the "recall present" state, the call control entity in the mobile station waits for acceptance of the Recall by the user. 
Once confirmation is received, the mobile station indicates acceptance of a recall by 

sending a SETUP message to its peer entity in the network; 

starting Timer T303; and 

entering the "call initiated" state and proceeding as described in section 5.2.LL 

The MS shall ensure that the contents of the Bearer Capability IE(s) sent in the SETUP message are the same as the 
Bearer Capability IE(s) in the previous CC-ESTABLISHMENT CONFIRMED message related to this Network 
Initiated MO Call. 

In the "recall-present" state, if the user of a mobile station is User Determined User Busy then a RELEASE 
COMPLETE message shall be sent with cause #17 "user busy" In the "recall-present" state. If the user of a mobile 
station wishes to reject the recall then a RELEASE COMPLETE message shall be sent with cause #21 "call rejected". 

In either case, the mobile shall release the connection in accordance with section 5.4.2 

On receipt of the SETUP message in the "recall present" state, the network shall stop timer T334 and proceed as 
specified in section 5.2.1.2. 

If the call control entity of the network does not receive a SETUP message before the expiry of timer T334, then the 
network shall send a RELEASE COMPLETE message to the mobile using cause #102 "recovery on timer expiry", 
release the MM connection, enter the "null" state and shall inform all appropriate entities within the network. 

MS Network 

+ + 

SETUP 
> 

RELEASE COMPLETE 
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+ + 

Figure 5.7b/TS 24.008 Recall acceptance or rejection by user 

5.2.3.5 Traffic channel assignment during network initiated mobile originating call 
establishment 

It is a network dependent decision whether or not to initiate the assignment of a traffic channel during the "CC- 
establishment confirmed" state. 
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5.3 Signalling procedures during the "active" state 

5.3.1 User notification procedure 

The mobile terminating user notification procedure allows the network to notify a mobile station of any appropriate 
call-related event during the "active" state of a call. The procedure consists in the network sending a NOTIFY message 
to the mobile station. No state change occurs at any of the interface sides following the sending or the receipt of this 
message (but an appropriate indication may optionally be generated in the mobile station). 

The mobile originating notification procedure allows the mobile station to notify the remote user of any appropriate 
call-related event during the "active" state of a call by sending a NOTIFY message containing a notification indicator to 
the network; upon receipt of this message, the network sends a NOTIFY message containing the same notify indicator 
to the other user involved in the call. No state change occurs at any of the interface sides following the sending or the 
receipt of this message. 

5.3.2 Call rearrangements 

Call rearrangements on the radio interface are not supported by explicit messages (e.g. SUSPEND and RESUME 
messages as defined in ETS 300 102-1). However if a remote non-PLMN user initiates call rearrangements, the network 
shall inform the mobile station by means of a NOTIFY message. In a similar way the mobile station can inform the 
network about rearrangements by sending a NOTIFY message (e.g. change of user equipment connected to the mobile 
station). 

5.3.3 Not used 

5.3.4 Support of Dual Services 

The behaviour described in this section is used to realize the following required services throughout section 5.3.4. The 
mobile station is not obliged to support the network originated in-call modification procedure. In that case, the mobile 
station shall, when receiving a MODIFY message, treat the message as unknown and react as described in section 8.4. 
If the mobile station is already prepared to support the procedure in both directions, it shall act as described in this 
section. 

Alternate Speech/Group 3 fax (Teleservice 61 according to GSM 02.03). 

5.3.4.1 Service Description 

This circuit switched service allows the two users on a point-to-point connection to use the connection between them 
for different information transfer during the same call, but not at the same time. 

If the negotiation during call establishment leads to the recognition of the above mentioned services, the in-call 
modification procedure is allowed to be executed within the current call by changing from one call mode to the other. 

In some cases the in-call modification procedure makes it necessary to change the channel configuration by allocating a 
new channel and in other cases to change channel configuration parameters while keeping the previously allocated 
channel. This change is determined by the network, which initiates either the channel assignment procedure, handover 
procedure or channel mode modify procedure (see section 3). 

The capability and the initial mode desired must be identified by the mobile station by identifying each mode of 
operation with a separate information element during call establishment. Further the type of change between the modes 
must be identified by means of the repeat indicator: 

mode 1 "alternate" mode 2. 

5.3.4.2 Call establishment 

For both mobile originating and mobile terminating calls, the normal call establishment procedures apply. 



£75/ 



(3G TS 24.008 version 3.2.1 Release 1999) 143 ETSI TS 124 008 V3.2.1 (2000-01) 

5.3.4.2.1 Mobile Originating Establishment 

The service is requested by the originating mobile station by transferring a SETUP message to the network containing 
the BC repeat indicator IE, the bearer capability 1 information element, and the bearer capability 2 information 
element. The first mode of operation ("call mode") shall be indicated by the bearer capability 1 information element 
and the second call mode by the bearer capability 2 information element. 

A low layer compatibility may optionally be specified for each call mode in a low layer compatibility I and low layer 
compatibility II information element. In that case: 

the SETUP message shall contain the LLC repeat indicator IE and both low layer compatibility I and low layer 
compatibility II information elements. The low layer compatibility I information element then corresponds to the 
bearer capability 1 information element and the low layer compatibility II information element to the bearer 
capability 2 information element; 

if no low layer compatibility specification applies for one of the two call modes, the corresponding low layer 
compatibility IE {low layer compatibility I or low layer compatibility II) shall indicate "not applicable"; 

the LLC repeat indicator shall specify the same repeat indication as the BC repeat indicator IE. 

Similarly, a high layer compatibility may optionally be specified for each call mode in a high layer compatibility i and 
high layer compatibility ii information element. In that case: 

the SETUP message shall contain the HLC repeat indicator IE and both high layer compatibility i and high layer 
compatibility ii information elements. The high layer compatibility i information element then corresponds to the 
bearer capability 1 information element and the high layer compatibility ii information element to the bearer 
capability 2 information element; 

if no high layer compatibility specification applies for one of the two call modes, the corresponding high layer 
compatibility IE {high layer compatibility i or high layer compatibility ii) shall indicate "not applicable"; 

the HLC repeat indicator shall specify the same repeat indication as the BC repeat indicator IE. 

The receiving entity shall ignore whether the LLC repeat indicator IE or HLC repeat indicator are contained in the 
message or not; it shall also ignore the repeat indication of an LLC repeat indicator IE or HLC repeat indicator IE. If 
the low layer compatibility II IE is not contained in the message and the low layer compatibility I IE is contained in the 
message, the receiving entity shall relate it to a call mode indicated in the message that does not specify speech (if any). 
If the high layer compatibility ii IE is not contained in the message and the high layer compatibility i IE is contained in 
the message, the receiving entity shall relate it to a call mode indicated in the message that does not specify speech (if 
any). 

The specific part of the network which is sensitive to the call mode shall examine each mode described in the bearer 
capabilities included in the SETUP message by performing compatibility checking as defined in Annex B. If as a result 
of this compatibility checking the network decides to reject the call, then the network shall initiate call clearing as 
specified in section 5.4 with the following causes: 

a) #57 "bearer capability not authorized" 

b) #58 "bearer capability not presently available" 

c) #65 "bearer service not implemented" 

d) #70 "only restricted digital information bearer capability is available" 

5.3.4.2.2 Mobile Terminating Establishment 

The service is indicated to the called mobile station by a SETUP message coded in the same manner as in the mobile 
originating call establishment. As specified for normal terminating call establishment, the service may be indicated by 
the called mobile station in the CALL CONFIRMED message. 

The destination mobile station shall perform the compatibility checking as defined in Annex B for both required modes 
if indicated in the SETUP message. If as a result of compatibility checking the mobile station decides to reject the call, 
the mobile station shall initiate call clearing according to the procedures of section 5.4 with one of the following causes: 

a) #57 "bearer capability not authorized" 
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b) #58 "bearer capability not presently available" 

c) #65 "bearer service not implemented" 

d) #88 "incompatible destination" 

The mobile station may accept the call if the first mode indicated is free irrespective of whether the other mode is free 
or busy. 

5.3.4.3 Changing the Call Mode 

In order to change the call mode, the following in-call modification procedures shall be used. 

Either side of the radio interface may act as the requesting user to invoke the in-call modification. 

Upon each successful completion of the in-call modification procedure, the call changes to the next mode negotiated 
and agreed during the establishment phase of the call. 

The in-call modification procedures are completely symmetrical at the radio interface. 

NOTE: Considering a possible future evolution, in-call modification is specified as a symmetrical procedure. 

5.3.4.3.1 Initiation of in-call modification 

The procedure is initiated by the requesting originating side in the "active" state of the call. It shall send a MODIFY 
message including the new mode to be changed to; start timer T323; and enter the "mobile originating modify" state 
(mobile station side) or the "mobile terminating modify" state (network side). Any internal resources necessary to 
support the next call mode shall be reserved. The new mode given in the MODIFY message shall be one of those 
already negotiated and agreed during the establishment phase of the call. If the data call direction is different from the 
direction of the call setup a reverse call setup direction IE shall be included in the MODIFY message; otherwise this IE 
shall not be included. The MODIFY originating side shall stop sending Bm-channel information; and stop interpreting 
received Bm-channel information according to the old call mode. 

Upon receipt of the MODIFY message, the destination side shall check to ensure that the requested call mode can still 
be supported and if so, it shall initiate the reservation of any resources necessary to support the next call mode and enter 
the "mobile originating modify" (network side) or "mobile terminating modify" state (mobile station side). 

5.3.4.3.2 Successful completion of in-call modification 

If the destination network/mobile station receives a MODIFY message with a new mode which is already the actual one 
of the call the network/mobile station shall remain in the "active" state; send a MODIFY COMPLETE message with 
the actual mode; and shall not initiate anything else. 

If the requested mode is not the actual one and can be supported by the destination interface it shall change the channel 
configuration, if required, and step on to any internal resources necessary to support the next call mode. If the requested 
mode is a data or facsimile mode, it shall also perform the appropriate means to take the direction of the data call into 
account. After successful change of the channel configuration it shall start sending user information according to the 
next call mode and start interpreting received user channel information according to the next call mode; send a 
MODIFY COMPLETE message with the new call mode included and enter the "active" state (mobile station or 
network side). If the MODIFY message had contained a reverse call setup direction IE, the same IE shall be included in 
the MODIFY COMPLETE message. 

In case of an alternate speech/facsimile group 3 service (refer to section 5.3.4) the old resources may still be kept 
reserved. 

Upon receipt of the MODIFY COMPLETE message the originating side shall: initiate the alternation to those resources 
necessary to support the next call mode; stop timer T323; and enter the "active" state (mobile station or network side). 
The reaction of the originating side if it had included a reverse call setup direction IE in the MODIFY message, but the 
destination side did not include the IE in the MODIFY COMPLETE message is implementation dependent. 

5.3.4.3.3 Change of the channel configuration 

In case the requested bearer capability cannot be supported by the current channel configuration the network shall 
initiate the assignment procedure and change the channel configuration accordingly. 
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5.3.4.3.4 



Failure of in-call modification 



5.3.4.3.4.1 



Network rejection of in-call modification 



If the network cannot support the change to the requested call mode or if the change of the channel configuration fails 
the network shall: release the resources which had been reserved for the alternation: send a MODIFY REJECT message 
with the old bearer capability and with cause # 58 "bearer capability not presently available" to the initiating mobile 
station; and enter the "active" state. If the change of the channel configuration fails, the network shall return to the 
internal resources required for the old call mode. 

Upon receipt of the MODIFY REJECT message with the old bearer capability the initiating mobile station shall: stop 
timer T323; release any resources which had been reserved for the alternation; resume sending user channel information 
according to the present call mode; resume interpreting received user channel information according to the present call 
mode; and enter the "active" state. 



5.3.4.3.4.2 



Mobile station rejection of in-call modification 



If the mobile station cannot support the change to the requested call mode, the mobile station shall: release any 
resources which had been reserved for the alternation; send a MODIFY REJECT message with the old bearer capability 
and cause # 58 "bearer capability not presently available", and enter the "active" state. 

Upon receipt of the MODIFY REJECT message the network shall: stop timer T323, release any resources which had 
been reserved for the alternation. 



5.3.4.3.4.3 



Time-out recovery 



Upon expiration of T323 in either the mobile station or the network the procedures for call clearing shall be initiated 
with cause #102 "recovery on timer expiry". 



5.3.4.4 



Abnormal procedures 



If a MODIFY, MODIFY COMPLETE or MODIFY REJECT message is received in the "disconnect indication", 
"disconnect request" (mobile station side only) or "release request" state then the received message shall be discarded 
and no action shall be taken. 



If a MODIFY COMPLETE message indicating a call mode which does not correspond to the requested one is received 
or if a MODIFY REJECT message indicating a call mode which does not correspond to the actual one is received then 
the received message shall be discarded and no action shall be taken. 

If a MODIFY message indicating a call mode which does not belong to those negotiated and agreed during the 
establishment phase of the call, is received, then a MODIFY REJECT message with the actual call mode and with cause 
# 57 "bearer capability not authorized" shall be sent back. 



MS 



Network 



MOD 



> 

assignment or channel mode modify 

MOD COMP 
< 

MOD REJ 
<-- 



Figure 5.10a/TS 24.008 In-call modification sequence initiated by MS 
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MS 



Network 



MOD 

MOD COMP 

MOD REJ 



< 

> 

-> 



assignment or channel mode modify 



Figure 5.10b/TS 24.008 In-call modification sequence initiated by networit 

5.3.5 User initiated service level up- and downgrading (GSM only) 

The user initiated service level up- and downgrading is applicable for non-transparent multislot data services, only. By 
means of this procedure the user can request a change of the "maximum number of traffic channels" and/or "wanted air 
interface user rate" parameters, to be assigned by the network. 

5.3.5.1 Initiation of service level up- and downgrading 

The procedure is initiated by the mobile station in the "active" state of the call. It shall: 

send a MODIFY message including the wanted value of the "maximum number of traffic channels" and/or the 
"wanted air interface user rate" parameters; 

not change any of the other, possibly negotiated, parameters of the bearer capability information element; 

start timer T323; and 

enter the "mobile originating modify" state. 

Any internal resources necessary to support the next service parameters shall be reserved. If a dual service was 
negotiated at call setup, the mobile station shall initiate the service level up- or down-grading only during the data phase 
of the dual service. 

Upon receipt of the MODIFY message, the network shall check if the indicated maximum number of traffic channels 
can be supported and enter the "mobile originating modify" state. 



5.3.5.2 



Successful completion of service level up- and downgrading 



The network may upon reception of the MODIFY message initiate a change of the channel configuration assigned to 
the mobile station. 

As a response to the MODIFY message the network sends a MODIFY COMPLETE message including the bearer 
capability negotiated at call setup and enters the "active" state. 

Upon receipt of the MODIFY COMPLETE message the mobile station shall stop timer T323 and enter the "active" 
state. 



5.3.5.3 



Rejection of service level up- and downgrading 



If a change of bearer service is requested together with a change of the "maximum number of traffic channels" and/or 
the "wanted air interface user rate", or if the current used service is not a data service where up- and downgrading is 
applicable, or if the receiver chooses not to grant the request, the network shall: 

send a MODIFY REJECT message with bearer capability negotiated at call setup and with cause #58 "bearer 
capability not presently available"; 

enter the "active" state. 

Upon receipt of the MODIFY REJECT message with the bearer capability negotiated at call setup, the mobile station 
shall: stop timer T323 and enter the "active" state. 
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5.3.5.4 Time-out recovery 

Upon expiration of T323 in the mobile station the procedures for call clearing shall be initiated with cause #102 
"recovery on timer expiry" . 

5.4 Call clearing 

5.4.1 Terminology 

The following terms are used in this Technical Specification in the description of clearing procedures: 

A traffic channel (see GSM 04.03) is "connected" when the channel is part of a circuit-switched connection 
established according to this Technical Specification. 

A traffic channel is "disconnected" when the channel is no longer part of a circuit-switched connection, but is not 
yet available for use in a new connection. 

5.4.2 Exception conditions 

Under normal conditions, the call control entity of the mobile station or of the network initiates call clearing by sending 
a DISCONNECT message to its peer entity; then both entities follow the procedures defined in sections 5.4.3 and 5.4.4 
respectively. 

As an exception to the above rule, the call control entity of the mobile station or of the network, in response to a SETUP 
or START CC or CC-ESTABLISHMENT CC- 

ESTABLISHMENT CONFIRMED or RECALL message, can reject a call by stopping all running call control timers, 
responding with a RELEASE COMPLETE message, releasing the MM connection, and returning to the "null" state, 
provided no other response has previously been sent. 

As a further exception, the call control entity of the network may initiate call clearing by stopping all running call 
control timers, sending a RELEASE message, starting timer T308, and entering the "release request" state. 

NOTE: This way to initiate call clearing by sending a RELEASE message should not be used by the network: 

if in-band tones/announcements are provided and the network decides to use the procedure described 
in section 5.4.4.1.1.1 or 5.4.4.2.1; 

if the network wants to have the opportunity to respond to information sent by the mobile station 
during call clearing, e.g. when the network indicates that "CCBS activation is possible". 

A call control entity shall accept an incoming RELEASE COMPLETE message used to initiate the call clearing even 
though the cause information element is not included. 

A control entity shall accept an incoming RELEASE message used to initiate the call clearing even though the cause 
information element is not included. 

Furthermore, a call control entity shall regard an incoming RELEASE COMPLETE message as consistent with any of 
its states; a call control entity shall regard an incoming RELEASE message as consistent with any of its states except 
the null state: a call control entity of the mobile station shall regard an incoming DISCONNECT message as consistent 
with any of its call control states except the "null" state, the "release request" state, and the "disconnect indication" state; 
a call control entity of the network shall regard an incoming DISCONNECT message as consistent with any of its call 
control states except the "null" state and the "release request" state. 

NOTE: This allows the introduction of shorter call clearing procedures in the future. 
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5.4.3 Clearing initiated by tine mobile station 

5.4.3.1 Initiation of call clearing 

Apart from the exceptions identified in section 5.4.2, the call control entity of the mobile station shall initiate clearing 
by: stopping all running call control timers, sending a DISCONNECT message; starting timer T305; and entering the 
"disconnect request" state. 

5.4.3.2 Receipt of a DISCONNECT message from the mobile station. 

The call control entity in the network in any state except the "null" state and the "release request" state shall, upon 
receipt of a DISCONNECT message: 

Stop all running call control timers; 

initiate procedures to clear the network connection and the call to the remote user; 

send a RELEASE message to its peer entity; 

start timer T308; and 

enter the "release request" state. 

NOTE: The RELEASE message has only local significance and does not imply an acknowledgement of clearing 
from the remote user. 

5.4.3.3 Receipt of a RELEASE message from the network 

The call control entity of the mobile station in any state except the "null" state and the "release request" state, shall, 
upon receipt of a RELEASE message: stop all running call control timers; send a RELEASE COMPLETE message; 
release the MM connection; and return to the "null" state. 

5.4.3.4 Receipt of a RELEASE COMPLETE message from the mobile station 

A call control entity of the network in any call control state shall, upon receipt of a RELEASE COMPLETE message 
from its peer entity in the mobile station: stop all running call control timers; release the MM connection; and return to 
the "null" state. 

5.4.3.5 Abnormal cases 

The call control entity of the mobile station in the "disconnect request" state, shall upon expiry of timer T305: send a 
RELEASE message to the network with the cause number originally contained in the DISCONNECT message and 
optionally, a second cause information element with cause #102 "recovery on timer expiry", start timer T308, and enter 
the "release request" state. 

The call control entity of the network in the "release request" state, shall, at first expiry of timer T308, retransmit the 
RELEASE message, start timer T308, and stay in the "release request" state. At second expiry of timer T308, the call 
control entity of the network shall: release the MM connection; and return to the "null" state. 

5.4.4 Clearing initiated by the network 

Apart from the exception conditions identified in section 5.4.2, the call control entity of the network shall initiate 
clearing by: sending a DISCONNECT message; and entering the "disconnect indication" state. The DISCONNECT 
message is a local invitation to clear the call. 

NOTE: When the network initiates clearing by sending a RELEASE message, the procedures described in 
sections 5.4.3., 5.4.3.4 and 5.4.3.5 are followed. 

A mobile station that does not support the "Prolonged Clearing Procedure" shall comply with the requirements of 
section 5.4.4.1 and shall ignore section 5.4.4.2. A mobile station that supports the "Prolonged Clearing Procedure" shall 
comply with the requirements of sections 5.4.4.2 and shall ignore section 5.4.4.1. 
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5.4.4.1 Clearing initiated by the network: mobile does not support "Prolonged 

Clearing Procedure" 

Section 5.4.4.1 only applies to mobile stations that do not support the "Prolonged Clearing Procedure" option. 

5.4.4.1 .1 Clearing when tones/announcements provided 

When in-band tones/announcements are provided (see section 5.5.1), the call control entity of the network may initiate 
clearing by sending a DISCONNECT message containing progress indicator #8 "in-band information or appropriate 
pattern now available", starting timer T306, and entering the "disconnect indication" state. 

5.4.4.1 .1 .1 Receipt of a DISCONNECT message with progress indicator #8 from tine network 

The call control entity of the MS in any state except the "null" state, the "disconnect indication" state, and the "release 
request" state, shall, upon receipt of a DISCONNECT message with progress indicator #8: 

i) if an appropriate speech traffic channel is not connected, continue clearing as defined in section 5.4.4. 1 .2. 1 
without connecting to the in-band tone/announcement; 

ii) if an appropriate speech traffic channel is connected, attach the user connection for speech if it is not yet attached 
and enter the "disconnect indication" state. In that state, if upper layers request the clearing of the call, the call 
control entity of the MS shall proceed as defined in section 5.4.4. 1.2.1. 

5.4.4.1.1.2 Expiry of timer T306 

The call control entity of the network, having entered the "disconnect indication" state after sending a disconnect 
message with the progress indicator #8, shall, upon expiry of timer T306, continue clearing by sending a RELEASE 
message with the cause number originally contained in the DISCONNECT message; starting timer T308; and entering 
the "release request" state. 

5.4.4.1 .2 Clearing when tones/announcements not provided 

When in-band tones and announcements are not provided, the call control entity of the network shall initiate call 
clearing by stopping all running call control timers, sending a DISCONNECT message without progress indicator, 
starting timer T305 and entering the "disconnect indication" state. 

5.4.4.1 .2.1 Receipt of a DISCONNECT message witlnout progress indicator or witin progress 
indicator different from #8 from the network 

The call control entity of the mobile station in any state except the "null" state, the "disconnect indication" state, and the 
"release request" state, shall, upon the receipt of a DISCONNECT message without progress indicator information 
element or with progress indicator different from #8: 

stop all running call control timers; 

send a RELEASE message; 

start timer T308; and 

enter the "release request" state. 

5.4.4.1 .2.2 Receipt of a RELEASE message from the mobile station 

The call control entity of the network in any state except the "null" state and the "release request" state, shall, upon 
receipt of a RELEASE message: stop all running call control timers; send a RELEASE COMPLETE message; release 
the MM connection; and return to the "null" state. 

5.4.4.1.2.3 Abnormal cases 

The call control entity of the network, having entered the "disconnect indication" state after sending a DISCONNECT 
message without progress indicator or with progress indicator different from #8, shall upon expiry of timer T305: send a 
RELEASE message to the mobile station with the cause number originally contained in the DISCONNECT message; 
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start timer T308; and enter the "release request" state. In addition to the original clearing cause, the RELEASE message 
may contain a second cause information element with cause #102 "recovery on timer expiry". 

5.4.4.1 .3 Completion of clearing 

A call control entity of the mobile station in any call control state shall, upon receipt of a RELEASE COMPLETE 
message from its peer entity in the network: stop all running call control timers ; release the MM connection; and return 
to the "null" state. 

5.4.4.1 .3.1 Abnormal cases 

The call control entity of the mobile station in the "release request" state shall at first expiry of timer T308 retransmit 
the RELEASE message and restart timer T308. At second expiry of timer T308, the call control entity of the mobile 
station shall: release the MM connection; and return to the "null" state. 

5.4.4.2 Clearing initiated by the network: mobile supports "Prolonged Clearing 

Procedure" 

Section 5.4.4.2 only applies to mobile stations that support the "Prolonged Clearing Procedure" option. 

5.4.4.2.1 Clearing when tones/announcements provided and the network does not indicate 

that "CCBS activation is possible" 

When in-band tones/announcements are provided (see section 5.5.1) and CCBS is not applicable, the call control entity 
of the network may initiate clearing by sending a DISCONNECT message containing progress indicator #8 "in-band 
information or appropriate pattern now available", either not containing an Allowed Actions IE or containing an Allowed 
Actions IE indicating "CCBS activation is not possible", starting timer T306, and entering the "disconnect indication" 

state. 

5.4.4.2.1 .1 Receipt of a DISCONNECT message 

The call control entity of the MS in any state except the "null" state, the "disconnect indication" state, and the "release 
request" state, shall, upon receipt of a DISCONNECT message with progress indicator #8 and, either not containing an 
Allowed Actions IE or containing an Allowed Actions IE indicating "CCBS activation is not possible": 

i) if an appropriate speech traffic channel is not connected, 

stop all running call control timers; 

send a RELEASE message; 

start timer T308; and 

enter the "release request" state. 

not connect to the in-band tone/announcement; 

ii) if an appropriate speech traffic channel is connected, attach the user connection for speech if it is not yet attached 
and enter the "disconnect indication" state. In that state, if upper layers request the clearing of the call, the call 
control entity of the MS shall: 

stop all running call control timers; 

send a RELEASE message; 

start timer T308; and 

enter the "release request" state. 

5.4.4.2.1.2 Expiry of timer T306 

The call control entity of the network, having entered the "disconnect indication, shall, upon expiry of timer T306, 
continue clearing by sending a RELEASE message with the cause number originally contained in the DISCONNECT 
message; starting timer T308; and entering the "release request" state. 
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5.4.4.2.2 Clearing when the network indicates that "CCBS activation is possible" 

When Activation of CCBS is possible, the call control entity of the network may initiate clearing by sending a 
DISCONNECT message containing the Allowed Actions IE with an indication that "Activation of CCBS is possible" 
and starting T338. Optionally, progress indicator #8 "in-band information or appropriate pattern now available" may 
also be contained in the DISCONNECT message (in which case, T338 shall not be greater than T306). 

5.4.4.2.2.1 Receipt of a DISCONNECT 

Relative to the current state the following procedures apply: 

- The call control entity of the MS in the "null" state, the "disconnect indication" state and the "release request" 
state, shall, upon receipt of a DISCONNECT message react as described in section 8. 

The call control entity of the MS in the "disconnect request" state, shall, upon receipt of a DISCONNECT 
message: 

stop all running call control timers; 

send a RELEASE message; 

start timer T308; and 

- enter the "release request" state. 

The call control entity of the MS in any other states, shall, upon receipt of a DISCONNECT message with an 
Allowed Actions IE indicating "Activation of CCBS is possible" pass the "Activation of CCBS is possible" indication to 
the upper layer, enter the "disconnect indication" state, stop all running call control timers and await a response from the 
upper layers. 

If the DISCONNECT message contained the progress indicator #8 "in-band information or appropriate pattern now 
available" and an appropriate speech traffic channel is connected, then the MS shall attach the user connection for 
speech if it is not yet attached. If the DISCONNECT message did not contain the progress indicator #8 "in-band 
information or appropriate pattern now available" any connected speech traffic channel shall be disconnected. 

Response from the upper layers: 

i) If the upper layers request the clearing of the call, the call control entity of the MS shall: 

stop all running call control timers; 

send a RELEASE message; 

start timer T308; and 

enter the "release request" state, 
ii) If the upper layers request that the "CCBS activation is to be attempted" then the MS shall 

send a RELEASE message containing a Facility IE including an 
Invoke=CCBSRequest to the network; 

stop all running call control timers; 

start timer T308; and 

enter the "release request" state. 

If an appropriate speech traffic channel is connected, transmission of this RELEASE message shall not cause it 
to be disconnected. 

5.4.4.2.2.2 Expiry of timer T338 

The call control entity of the network, having entered the "disconnect indication" state after sending a DISCONNECT 
message with an Allowed Actions IE indicating "Activation of CCBS is possible" shall, upon expiry of timer T338, 
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continue clearing by sending a RELEASE message with the cause number originally contained in the DISCONNECT 
message; starting timer T308; and entering the "release request" state. 

5.4.4.2.3 Clearing when tones/announcements are not provided and the network does not 
indicate that "CCBS activation is possible" 

When in-band tones and announcements are not provided, and, the network does not wish to indicate in the Allowed 
Actions IE that "CCBS is possible", the call control entity of the network shall initiate call clearing by stopping all 
running call control timers, sending a DISCONNECT message without progress indicator, either without the Allowed 
Actions IE or with the Allowed Actions IE indicating that "CCBS is not possible", starting timer T305 and entering the 
"disconnect indication" state. 

5.4.4.2.3.1 Receipt of a DISCONNECT message 

The call control entity of the mobile station in any state except the "null" state, the "disconnect indication" state, and the 
"release request" state, shall, upon the receipt of a DISCONNECT message either without progress indicator 
information element or with progress indicator different from #8, and, either without the Allowed Actions IE or with the 
Allowed Actions IE indicating that "CCBS is not possible": 

stop all running call control timers; 

send a RELEASE message; 

start timer T308; and 

- enter the "release request" state. 

5.4.4.2.3.2 Abnormal cases 

The call control entity of the network, having entered the "disconnect indication", shall upon expiry of timer T305: send 
a RELEASE message to the mobile station with the cause number originally contained in the DISCONNECT message; 
start timer T308; and enter the "release request" state. 

5.4.4.2.4 Receipt of a RELEASE message from the mobile station 

5.4.4.2.4.1 Release, CCBS not requested 

For a network that does not support the "CCBS activation" option: 

The call control entity of the network in any state except the "null" state and the "release request" state, shall, 
upon receipt of a RELEASE message: stop all running call control timers; send a RELEASE COMPLETE 
message; release the MM connection; and return to the "null" state. 

For a network that does support the "CCBS activation" option: 

The call control entity of the network in any state except the "null" state and the "release request" state, shall, 
upon receipt of a RELEASE message without a Facility IE including an Invoke=CCBSRequest: stop all running 
call control timers; send a RELEASE COMPLETE message; release the MM connection; and return to the "null" 

state. 

5.4.4.2.4.2 Release, CCBS Requested 

For a network that does not support the "CCBS activation" option: 

The call control entity of the network in any state except the "null" state and the "release request" state, shall, 
upon receipt of a RELEASE message: stop all running call control timers; send a RELEASE COMPLETE 
message; release the MM connection; and return to the "null" state. 

For a network that does support the "CCBS activation" option: 

The call control entity of the network in any state except the "null" state and the "release request" state, shall, 
upon receipt of a RELEASE message containing a Facility IE including an Invoke=CCBSRequest: stop all 
running call control timers; then attempt to activate the recall; then send a RELEASE COMPLETE message 
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indicating the success or failure of the recall activation attempt; release the MM connection; and return to the 
"null" state. 

5.4.4.2.5 Completion of clearing 

A call control entity of the mobile station in any call control state shall, upon receipt of a RELEASE COMPLETE 
message from its peer entity in the network: stop all running call control timers ; release the MM connection; and return 
to the "null" state. 

5.4.4.2.5.1 Abnormal cases 

The call control entity of the mobile station in the "release request" state shall at first expiry of timer T308 retransmit 
the RELEASE message and restart timer T308. At second expiry of timer T308, the call control entity of the mobile 
station shall: release the MM connection; and return to the "null" state. 

The retransmitted RELEASE message need not contain the Facility IE including an Invoke=CCBSRequest, even if the 
original RELEASE message did contain this IE.5.4.5Clear collision 

Clear collision occurs when both the mobile station and the network simultaneously transfer DISCONNECT messages 
specifying the same call. 

The behaviour of the network call control entity receiving a DISCONNECT message whilst in the "disconnect 
indication" state is specified in section 5.4.3. The behaviour of the MS call control entity receiving a DISCONNECT 
message whilst in the "disconnect request" state is defined in section 5.4.4. 

Clear collision can also occur when both sides simultaneously transfer RELEASE messages related to the same call. 
The entity receiving such a RELEASE message whilst within the "release request" state shall: stop timer T308; release 
the MM connection; and enter the "null" state (without sending a RELEASE COMPLETE message). 

5.5 Miscellaneous procedures 

5.5.1 In-band tones and announcements 

When the network wants to make the mobile station attach the user connection (e.g. in order to provide in-band 
tones/announcement) before the mobile station has reached the "active" state of a call, the network may include a 
progress indicator IE indicating user attachment in a suitable CC message: 

- Either it includes the IE in a SETUP, CALL PROCEEDING, ALERTING, or CONNECT message that is send 
during call establishment 

it sends a PROGRESS message containing the IE. 

A progress indicator IE indicates user attachment if it specifies a progress description in the set { 1, 2, 3} or in the set 
{6, 7, 8, ...,20}. 

On reception of a SETUP, CALL PROCEEDING, ALERTING, CONNECT, or PROGRESS message the mobile 
station shall proceed as specified elsewhere in section 5; if the progress indicator IE indicated user attachment and a 
speech mode traffic channel is appropriate for the call the mobile station shall in addition: attach the user connection for 
speech as soon as an appropriate channel in speech mode is available. (If a new order to attach the user connection is 
received before the attachment has been performed, the new order shall supersede the previous one.) 

Under certain conditions the MS will have to attach the user connection before the CONNECT message. It is up to the 
network to ensure that no undesired end-to-end through connection takes place during the establishment of a MT call. 

NOTE: This allows the use of progress indicator lEs independently from the channel modes appropriate for the 
call. 

5.5.2 Call collisions 

Call collisions as such cannot occur at the network. Any simultaneous mobile originating or mobile terminating calls 
are dealt with separately assigned and different transaction identifiers. 
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5.5.3 Status procedures 

5.5.3.1 Status enquiry procedure 

Whenever a call control entity wishes to check the call state of its peer entity, it may initiate the status enquiry 
procedure. 

NOTE: This may, in particular, apply to procedural error conditions described in section 8. 

A call control entity initiates the status enquiry procedure by sending the STATUS ENQUIRY message and starting 
timer T322. While timer T322 is running, the call control entity shall not send further STATUS ENQUIRY messages. 

Upon receipt of a STATUS ENQUIRY message, the receiver shall respond with a STATUS message, reporting the 
current call state and cause value #30 "response to STATUS ENQUIRY". Receipt of the STATUS ENQUIRY shall not 
result in a state change relating to any protocol and connection of the receiver. 

If a STATUS message is received that contains cause value #30 "response to status enquiry", timer T322 shall be 
stopped and further appropriate actions taken, based on the information in that STATUS message, relative to the current 
state of the receiver of the STATUS message. These further "appropriate actions" are implementation dependent. 
However, the actions prescribed in section 5.5.3.2 shall apply. 

If a clearing message is received while timer T322 is running, timer T322 shall be stopped, and call clearing shall 
continue. 

If timer T322 expires, the STATUS ENQUIRY message may be retransmitted maximally once. If T322 expires after 
the STATUS ENQUIRY has been transmitted the maximum number of times, clearing of the call shall be initiated with 
cause value #41, "temporary failure", in the first call clearing message. 

5.5.3.2 Reception of a STATUS message by a CC entity 

5.5.3.2.1 STATUS message with incompatible state 

On receipt of a STATUS message reporting an incompatible call control state, the receiving entity shall clear the call by 
sending a RELEASE COMPLETE message with cause # 101 "message not compatible with protocol state". The 
reported call control state is incompatible if the combination of call control states at the sender and receiver side cannot 
occur, do not match or cannot be aligned by actions of the receiver; the exact definition is implementation dependent. 

5.5.3.2.2 STATUS message with compatible state 

A STATUS message may be received indicating a compatible call state but containing one of the following 

causes: 

# 95 "semantically incorrect message"; or 

# 96 "invalid mandatory information"; or 

# 97 "message type non-existent or not implemented"; or 

# 98 "message type not compatible with protocol state"; or 

# 99 "information element non-existent or not implemented"; or 

# 100 "conditional IE error". 

This indicates that the transmitter of the STATUS message was unable to accept some information sent by the recipient 
of the STATUS message. This allow the recipient to retransmit some or all of the information. Other actions are 
possible and are implementation dependent; they may include releasing the call. 

5.5.4 Call re-establishment, mobile station side 

This section describes the internal handling in the mobile station as far as call control is concerned. 
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5.5.4.1 Indication from the mobility management sublayer 

When a MM connection is active, an indication may be given by the MM sublayer to the call control entity to announce 
that the current MM connection has been interrupted but might be re-established on request of call control. 

5.5.4.2 Reaction of call control 

Depending whether call re-establishment is allowed or not and on its actual state, call control shall decide to either 
request re-establishment or to release the MM connection. 

a) Re-establishment not required 

If the call is in the call establishment or call clearing phase, i.e. any state other than the "active" state or the 
"mobile originating modify" state, call control shall release the MM connection 

b) Re-establishment required 

If the call is in the "active" state or "mobile originating modify" state, the indication from MM that re- 
establishment is possible shall cause call control to request re-establishment from the MM connection, 
suspend any further message to be sent and await the completion of the re-establishment procedure. 

5.5.4.3 Completion of re-establishment 

Call Control is notified when the MM connection is re-established and shall then resume the transmission of possibly 
suspended messages and resume user data exchange when an appropriate channel is available. 

5.5.4.4 Unsuccessful outcome 

If the attempt to re-establish the connection was unsuccessful, the MM connection will be released and a release 
indication will be given to call control, see 4.5.1.6. 

5.5.5 Call re-establishment, network side 

This section describes the handling in the network as far as call control is concerned. 

5.5.5.1 State alignment 

After a successful call re-establishment it is a network responsibility to identify (e.g. by using the status enquiry 
procedure, if needed, and resolve, if possible, any call state or auxiliary state mismatch between the network and the 
mobile station. 

5.5.6 Progress 

At any time during the establishment or release of a call and during an active call the network may send a PROGRESS 
message to the mobile station. 

On receipt of a PROGRESS message during the establishment or release of a call the mobile station shall stop all call 
control timers related to that call. 

NOTE: If the PROGRESS has been received before the receipt of a CALL PROCEEDING message, the mobile 
station will not start timer T310 on receipt of a CALL PROCEEDING message, see section 5.2.1.1.3. 

MS Network 

PROGRESS 
< 

Figure 5.11/TS 24.008 Progress 
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5.5.7 DTMF protocol control procedure 

Dual Tone Multi Frequency (DTMF) is an inband one out of four plus one out of four signalling system primarily used 
from terminal instruments in telecommunication networks. The support of DTMF in the network is described in 
TS 23.014. 

The mobile station shall be capable of transmitting DTMF messages if and only if the mobile station has the user 
connection for speech attached and an appropriate channel is available. 

The transaction identifier used by the DTMF messages shall be that of the attached speech call. 

NOTE 1: This specification means that DTMF messages can generally be sent in the active state of a call in speech 
transmission mode or when a traffic channel is available during setup or release and the progress 
indicator IE has been received. 

NOTE 2: Since the DTMF protocol messages are sent in a store and forward mode on the signalling channels the 
control of the device at the far end may be delayed dependent on the load or quality of the channels. 

NOTE 3: The procedures described in this paragraph support DTMF only in the direction mobile station to 
network. 

5.5.7.1 Start DTMF request by the mobile station 

A user may cause a DTMF tone to be generated e.g. by depression of a key in the mobile station. The relevant action is 
interpreted by the mobile station as a requirement for a DTMF digit to be sent in a START DTMF message on an 
established FACCH. This message contains the value of the digit to be transmitted (0, 1, ..., 9, A, B, C, D, *, #). 

Only a single digit will be transferred in each START DTMF message. 

On sending a START DTMF message the MS shall start timer T336. 

Where a previous START DTMF message has been sent, another START DTMF message shall only be sent by the MS 
following receipt of its STOP DTMF ACKNOWLEDGE message (see section 5.5.7.4) or a START DTMF REJECT 
message from the network (see section 5.5.7.2) or following the expiry of timers T336 and T337. 

If timer T336 expires, the MS shall terminate the ongoing DTMF procedure without any retransmissions, and is free to 
begin another DTMF procedure (e.g. another START DTMF message). 

5.5.7.2 Start DTMF response by the network 

Upon receiving the START DTMF message the network will reconvert the received digit back into a DTMF tone which 
is applied toward the remote user and returns a START DTMF ACKNOWLEDGE message to the mobile station. This 
acknowledgement may be used in the mobile station to generate an indication as a feedback for a successful 
transmission. 

If the network cannot accept the START DTMF message a START DTMF REJECT message will be sent to the mobile 
station. Upon receipt of a START DTMF ACK message or a START DTMF REJECT message , the MS shall stop 
timer T336. 

5.5.7.3 Stop DTMF request by the mobile station 

When the user indicates that the DTMF sending should cease e.g. by releasing the key the mobile station will send a 
STOP DTMF message to the network. 

On sending a STOP DTMF message the MS shall start timer T337. 

The MS shall only send a STOP DTMF message if a START DTMF ACKNOWLEDGE message has been received 
from the network (see section 5.5.7.2). 

If timer T337 expires, the MS shall terminate the ongoing DTMF procedure without any retransmissions, and is free to 
begin another DTMF procedure, (e.g. another START DTMF message). 
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5.5.7.4 



Stop DTMF response by the network 



Upon receiving the STOP DTMF message the network will stop sending the DTMF tone and return a STOP DTMF 
ACKNOWLEDGE message to the mobile station. Upon receipt of a STOP DTMF ACKNOWLEDGE message, the MS 
shall stop timer T337. 

5.5.7.5 Sequencing of subsequent start DTMF requests by the mobile station 

The network shall ensure that the minimum length of tone and the minimum gap between two subsequent tones 
(according to ETR 206) is achieved. 

NOTE 1: In ETR 206 the minimum duration of a DTMF tone is 70ms +5ms. 

NOTE 2: In ETR 206 the minimum gap between DTMF tones is 65ms. 

There is no defined maximum length to the tone, which will normally cease when a STOP DTMF message is received 
from the MS. However, the operator may choose to put a pre-defined time limit on the duration of tones sent. 

The appropriate sequencing of DTMF control messages is shown in figures 5.8 and 5.9. 

NOTE 1 : The network may implement the time limit option where the DTMF tone duration is controlled by the 
network irrespective of the receipt of a STOP DTMF message from the mobile station. 



Mobile Station 



Network 



START DTMF 
START DTMF ACK 

STOP DTMF 
STOP DTMF ACK 



Figure 5.8/TS 24.008 Single DTMF transmission 

Mobile Station Network 

START DTMF (x) 

> 

START DTMF ACK 

< 

STOP DTMF 

> 

STOP DTMF ACK 

< 

START DTMF (y) 



START DTMF ACK 



Figure 5.9/TS 24.008 Multiple DTMF transmission 



Support for packet services 



This chapter contains the description of the procedures for the session management of GPRS point-to-point data 
services at the radio interface (Reference point Uu and Um). 
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6.1 GPRS Session management 
6.1.1 General 

The main function of the session management (SM) is to support PDP context handling of the user terminal. The SM 
comprises procedures for 

identified PDP context activation, deactivation and modification; and 

anonymous PDP context activation and deactivation, (FFS in UMTS). 

SM procedures for identified access can only be performed if a GMM context has been established between the MS and 
the network. If no GMM context has been established, the MM sublayer has to initiate the establishment of a GMM 
context by use of the GMM procedures as described in chapter 4. After GMM context establishment, SM uses services 
offered by GMM (see TS 24.007 [20]). Ongoing SM procedures are suspended during GMM procedure execution. 

For anonymous access no GMM context is established. 

For the session management protocol, the extended TI mechanism may be used (see 24.007) 

6.1 .1 .1 Radio resource sublayer address handling for anonymous access (FFS in 

UMTS) 

In the case of anonymous access, no P-TMSI shall be used by the MS or by the network. The MS shall use a randomly 
selected random TLLI for transmission of the ACTIVATE AA PDP CONTEXT REQUEST message in order to 
activate the AA PDP context. 

Upon receipt of the ACTIVATE AA PDP CONTEXT REQUEST message, the network assigns an auxiUary TLLI (A- 
TLLI) to the AA PDP context and transmits the assigned A-TLLI to the MS. After receipt of the assigned A-TLLI, the 
MS shall use it for further data transmission to the network for the lifetime of the AA PDP context. 



6.1.2 Session management states 



In this section, the SM states are described for one SM entity (see TS24.007 [20]). Each SM entity is associated with 
one PDP context. Section 6.1.2.1 describes the SM states in the MS and section 6.1.2.2 describes the SM states on the 
network side. 

6.1 .2.1 Session management states in the MS 

In this section, the possible states of an SM entity in the mobile station are described. As illustrated in figure 6.1/TS 
24.008 there arefive SM states in the MS. 

6.1.2.1.1 PDP-INACTIVE 
This state indicates that no PDP context exists. 

6.1.2.1.2 PDP-ACTIVE-PENDING 

This state exists when PDP context activation was requested by the MS. 

6.1.2.1.3 PDP-INACTIVE-PENDING 

This state exists when deactivation of the PDP contexts was requested by the MS. 

6.1.2.1.4 PDP-ACTIVE 

This state indicates that the PDP context is active. 

6.1.2.1.5 PDP-MODIFY_PENDING 

This state exists when modification of the PDP context was requested by the MS. 
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DR: GMMSM-DATA-REQUEST (Message), i.e. message sent by an MS 

DI: GMMSM-DATA-INDICATION (Message), i.e. message received by an MS 

Figure 6.1/TS 24.008: Session management states in the IVIS (overview) 

It shall be noted, that Figure 6.1/TS 24.008 applies to both primary and secondary PDP contexts, though the distinction 
in messages regarding the activation of primary and secondary PDP contexts is not shown here for simplicity. 

6.1 .2.2 Session management states on the network side 

In this section, the possible states of an SM entity on the network side are described. As illustrated in figure 6.2/TS 
24.008 there are five SM states on the network side. 

6.1.2.2.1 PDP-INACTIVE 

This state indicates that the PDP context is not active. 

6.1.2.2.2 PDP-ACTIVE-PENDING 

This state exists when the PDP context activation was initiated by the network. 

6.1.2.2.3 PDP-INACTIVE-PENDING 

This state exists when deactivation of the PDP context was requested by the network. 

6.1.2.2.4 PDP-ACTIVE 

This state indicates that the PDP context is active. 
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6.1.2.2.5 PDP-MODIFY-PENDING 

This state exists when modification of the PDP context was requested by the network. 




DR: GMMSM-DATA-REQUEST (Message), i.e. message sent by network 

DI: GMMSM-DATA-INDICATION (Message), i.e. message received by the network 



Figure 6.2/TS 24.008: Session management states on the networit side (overview) 

It shall be noted, that Figure 6.2/TS 24.008 applies to both primary and secondary PDP contexts, though the distinction 
in messages regarding the activation of primary and secondary PDP contexts is not shown here for simplicity. 

6.1 .3 Session Management procedures 



6.1.3.1 



PDP context activation 



The purpose of this procedure is to establish a PDP context between the MS and the network for a specific QoS on a 
specific NSAPI. The PDP context activation may be initiated by the MS or the initiation may be requested by the 
network. 

Each PDP address may be described by one or more PDP contexts in the MS or the network. The first PDP context 
activated for a PDP address is called the primary context, whereas all additional contexts associated to the same PDP 
address are called secondary contexts. When more than one PDP contexts are associated to a PDP address, there shall 
be a Traffic Flow Template (TFT) for each additional context. The TFT shall be sent transparently via the SGSN to the 
GGSN to enable packet classification and policing for downlink data transfer (see TS 23.060). 



6.1.3.1.1 



Successful PDP context activation initiated by the mobile station 



In order to request a PDP context activation, the MS sends an ACTIVATE PDP CONTEXT REQUEST message to the 
network, enters the state PDP-ACTIVE-PENDING and starts timer T3380. The message contains the selected NSAPI, 
PDP type, requested QoS and, if the MS requests a static address, the PDP address. The MS shall ensure that the 
selected NSAPI is not currently being used by another Session Management entity in the MS. 
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Upon receipt of an ACTIVATE PDP CONTEXT REQUEST message, the network selects a radio priority level based 
on the QoS negotiated and may reply with an ACTIVATE PDP CONTEXT ACCEPT message. Upon receipt of the 
message ACTIVATE PDP CONTEXT ACCEPT the MS shall stop timer T3380, shall enter the state PDP-ACTIVE. If 
the offered QoS parameters received from the network differ from the QoS requested by the MS, the MS shall either 
accept the negotiated QoS or initiate the PDP context deactivation procedure. 

In GSM, the MS shall initiate establishment of the logical link for the LLC SAPI indicated by the network with the 
offered QoS and selected radio priority level if no logical link has been already established for that SAPI. If the offered 
QoS parameters received from the network differ from the QoS requested by the MS, the MS shall either accept the 
negotiated QoS or initiate the PDP context deactivation procedure. If the LLC SAPI indicated by the network can not be 
supported by the MS, the MS shall initiate the PDP context deactivation procedure. 

In UMTS, both the network and the MS shall store the LLC SAPI and the radio priority in the PDP context. If a UMTS 
to GMS system change is performed, the new SGSN shall initiate establishment of the logical link using the negotiated 
QoS profile, the negotiated LLC SAPI, and selected radio priority level stored in the PDP context as in a GSM to GMS 
Routing Area Update. 

An MS, which is capable of operating in both GSM and UMTS, shall use a valid LLC SAPI, while an MS which is 
capable of operating only in UMTS shall indicate the LLC SAPI value as "LLC SAPI not assigned" in order to avoid 
unnecessary value range checking and any other possible confusion in the network. 

NOTE: The radio priority level and the LLC SAPI parameters, though not used in UMTS, shall be included in the 
messages, in order to support handover between UMTS and GSM networks. 



6.1 .3.1 .2 Successful PDP context activation requested by the network 

In order to request a PDP context activation, the network sends a REQUEST PDP CONTEXT ACTIVATION message 
to the MS and starts timer T3385. If available, the APN shall be included in the REQUEST PDP CONTEXT 
ACTIVATION message. 

Upon receipt of a REQUEST PDP CONTEXT ACTIVATION message, the MS shall than either initiate the PDP 
context activation procedure as described in the previous section or shall reject the activation request by sending a 
REQUEST PDP CONTEXT ACTIVATION REJECT message as described in section 6.1.3.1.4. The value of the reject 
cause IE of the REQUEST PDP CONTEXT ACTIVATION REJECT message shall indicate the reason for rejection, 
e.g. "insufficient resources to activate another context". 

The ACTIVATE PDP CONTEXT REQUEST message sent by the MS in order to initiate the PDP context activation 
procedure shall contain the PDP address, PDP Type and APN requested by the network in the REQUEST PDP 
CONTEXT ACTIVATION message. 

Upon receipt of the ACTIVATE PDP CONTEXT REQUEST message, the network shall stop timer T3385. 

The same procedures then apply as described for MS initiated PDP context activation. 

6.1 .3.1 .3 Unsuccessful PDP context activation initiated by the MS 

Upon receipt of an ACTIVATE PDP CONTEXT REQUEST message the network may reject the MS initiated PDP 
context activation by sending an ACTIVATE PDP CONTEXT REJECT message to the MS. The message shall contain 
a cause code that typically indicates one of the following causes: 

# 26: insufficient resources; 

# 27: missing or unknown APN; 

# 28: unknown PDP address or PDP type; 

# 29: user authentication failed; 

# 30: activation rejected by GGSN; 
#31: activation rejected, unspecified; 

# 32: service option not supported; 

# 33: requested service option not subscribed; 

# 34: service option temporarily out of order; 

# 35: NSAPI already used; or 

# 95 - 111: protocol errors. 
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Upon receipt of an ACTIVATE PDP CONTEXT REJECT message, the MS shall stop timer T3380 and enter/remain in 
state PDP-INACTIVE. 

6.1 .3.1 .4 Unsuccessful PDP context activation requested by the network 

Upon receipt of the REQUEST PDP CONTEXT ACTIVATION message, the MS may reject the network requested 
PDP context activation by sending the REQUEST PDP CONTEXT ACTIVATION REJECT message to the network. 
The message contains all parameters of the REQUEST PDP CONTEXT ACTIVATION and an additional cause code 
that typically indicates one of the following causes: 

# 26: insufficient resources; 

#31: activation rejected, unspecified; 

# 40: feature not supported; or 

# 95 - 111: protocol errors. 

The network shall stop timer T3385 and enter state PDP-INACTIVE. 

6.1.3.1.5 Abnormal cases 

The following abnormal cases can be identified: 

a) Expiry of timers 

In the mobile station: 

On the first expiry of the timer T3380, the MS shall resend the ACTIVATE PDP CONTEXT REQUEST and 
shall reset and restart timer T3380. This retransmission is repeated four times, i.e. on the fifth expiry of timer 
T3380, the MS shall release all resources possibly allocated for this invocation and shall abort the procedure; 
no automatic PDP context activation re-attempt shall be performed. 

On the network side: 

On the first expiry of the timer T3385, the network shall resend the message REQUEST PDP CONTEXT 
ACTIVATION and shall reset and restart timer T3385. This retransmission is repeated four times, i.e. on the 
fifth expiry of timer T3385, the network shall release possibly allocated resources for this activation and shall 
abort the procedure. 

b) Collision of MS initiated and network requested PDP context activation 

Dynamic PDP address collision case: 

If the MS uses dynamic PDP addressing that turns out to collide with the network requested PDP address, then 
there is no detection of collision specified but left for network implementation. 

Static PDP address collision detected within the mobile station: 

A collision of an MS initiated and a network requested PDP context activation procedure is identified by the 
MS if a REQUEST PDP CONTEXT ACTIVATION message is received from the network after the MS has 
sent an ACTIVATE PDP CONTEXT REQUEST message, and the MS has not yet received an ACTIVATE 
PDP CONTEXT ACCEPT or ACTIVATE PDP CONTEXT REJECT message. 

Note: In general, the MS is unable to test if the PDP type, PDP address and APN in the REQUEST PDP 
CONTEXT ACTIVATION message are the same as those for the PDN to which it is attempting to 
activate a context. This is because the MS may have omitted one or more of the parameters in the 
ACTIVATE PDP CONTEXT REQUEST message, since it is relying on default values to be provided by 
the network. 

In the case of such a collision, the MS initiated PDP context activation shall take precedence over the 
network requested PDP context activation. If the MS is able to compare the PDP type, PDP address and APN 
requested in the ACTIVATE PDP CONTEXT REQUEST message with those requested in the REQUEST 
PDP CONTEXT ACTIVATION message and these parameters are equal, then the MS shall discard the 
REQUEST PDP CONTEXT ACTIVATION message and shall wait for the network response to its 
ACTIVATE PDP CONTEXT REQUEST message. Otherwise the MS shall send a REQUEST PDP 
CONTEXT ACTIVATION REJECT message with the cause 'insufficient resources' to the network, and wait 
for an ACTIVATE PDP CONTEXT ACCEPT message. 
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Static PDP address collision detected on the network side: 

A collision is detected by the network in the case where the PDP address, PDP type and APN derived 
(according to 23.060 annex A) from the ACTIVATE PDP CONTEXT REQUEST message received from the 
MS match those in the REQUEST PDP CONTEXT ACTIVATION message sent to the MS. 

In the case of such a collision, the MS initiated PDP context activation shall take precedence over the 
network requested PDP context activation. The network shall terminate the network requested PDP context 
activation procedure, and proceed with the MS initiated PDP context activation procedure 
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Figure 6.3/TS 24.008: MS initiated PDP context activation procedure 
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Figure 6.4/TS 24.008: Networit initiated PDP context activation procedure 

6.1 .3.2 Secondary PDP Context Activation Procedure 

The purpose of this procedure is to establish a secondary PDP context between the MS and the network for a specific 
Traffic Flow Template (TFT) and QoS profile on a specific NSAPI, when one or more PDP contexts has/have already 
been established for the particular PDP address. For each secondary PDP context, a different QoS profile and TFT shall 
be requested. 

6.1 .3.2.1 Successful Secondary PDP Context Activation Initiated by the MS 

In order to request a secondary PDP context activation, the MS shall send an ACTIVATE SECONDARY PDP 
CONTEXT REQUEST message to the network, enter the state PDP-ACTIVE-PENDING and start timer T3380. The 
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message shall contain the selected NSAPI. The MS shall ensure that the selected NSAPI is not currently being used by 
another Session Management entity in the MS. The message shall also include a QoS profile, a TFT, a requested LLC 
SAPI and the Linked TI. The QoS profile is the requested QoS. The TFT shall be sent transparently through the SGSN 
to the GGSN to enable packet classification and policing for downlink data transfer. 

Upon receipt of an ACTIVATE SECONDARY PDF CONTEXT REQUEST, the network shall validate the message by 
verifying the TI given in the Linked TI IE. The same GGSN address shall be used by the SGSN as for the already 
established PDF context(s) for that PDF address. The network shall select a radio priority level based on the QoS 
negotiated and shall reply with an ACTIVATE SECONDARY PDF CONTEXT ACCEPT message, if the request can 
be accepted. 

Upon receipt of the message ACTIVATE SECONDARY PDF CONTEXT ACCEPT, the MS shall stop timer T3380 
and enter the state PDF- ACTIVE. If the offered QoS parameters received from the network differ from the QoS 
requested by the MS, the MS shall either accept the negotiated QoS or initiate the PDF context deactivation procedure. 

In GSM the MS shall initiate establishment of the logical link for the LLC SAPI indicated by the network with the 
offered QoS and selected radio priority level if no logical link has been already established for that SAPI. If the LLC 
SAPI indicated by the network can not be supported by the MS, the MS shall initiate the PDF context deactivation 
procedure. 

In UMTS, both SGSN and MS shall store the LLC SAPI and the radio priority in the PDF context. If a UMTS to GSM 
Routing Area Update is performed, the new SGSN shall initiate establishment of the logical link using the negotiated 
LLC SAPI, the negotiated QoS profile and selected radio priority level stored in the PDF context as in a GSM to GSM 
Routing Area Update. 

An MS, which is capable of operating in both GSM and UMTS, shall use a valid LLC SAPI, while an MS which is 
capable of operating only in UMTS shall indicate the LLC SAPI value as "LLC SAPI not assigned" in order to avoid 
unnecessary value range checking and any other possible confusion in the network. 

NOTE: The radio priority level and the LLC SAPI parameters, though not used in UMTS, 

shall be included in the messages, in order to support handover between UMTS 
and GSM networks. 6.1 .3.2.2 Unsuccessful Secondary PDP Context Activation 
initiated by the MS 

Upon receipt of an ACTIVATE SECONDARY PDP CONTEXT REQUEST message, the network may reject the MS 
initiated secondary PDP context activation by sending an ACTIVATE SECONDARY PDP CONTEXT REJECT 
message to the MS. The message shall contain a cause code that typically indicates one of the following: 

# 26: insufficient resources; 

# 30: activation rejected by GGSN; 
#31: activation rejected, unspecified; 

# 32: service option not supported; 

# 33: requested service option not subscribed; 

# 34: service option temporarily out of order; 

# 35: NSAPI already used; 
#41: TFT already used; 

# 42: invalid TFT; 

# 43: unknown PDP context; 

# 95 - 111: protocol errors. 

Upon receipt of an ACTIVATE SECONDARY PDP CONTEXT REJECT message, the MS shall stop timer T3380 and 
enter the state PDF-INACTIVE. 

6.1 .3.2.3 Abnormal cases 

The following abnormal cases can be identified: 

a) Expiry of timers 

On the first expiry of the timer T3380, the MS shall resent the ACTIVATE SECONDARY PDP CONTEXT 
REQUEST and shall reset and restart timer T3380. This retransmission is repeated four times, i.e. on the fifth 
expiry of timer T3380, the MS shall release all resources possibly allocated for this invocation and shall abort the 
procedure; no automatic PDP context activation re-attempt shall be performed. 
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b) MS initiated Secondary PDP context activation for an already activated Secondary PDP context (On the network 
side) 

If all parameters of the new ACTIVATE SECONDARY PDP CONTEXT REQUEST message match with those 
of a previously activated PDP context, the network shall reply with an ACTIVATE SECONDARY PDP 
CONTEXT ACCEPT message. 

Otherwise, the network shall check the parameters as follows: 

The SGSN shall first check whether there is an activated PDP context for the TI given in the Linked TI IE in the 
ACTIVATE SECONDARY PDP CONTEXT REQUEST message. If there is no active PDP context for the specified 
TI, the network shall reply with an ACTIVATE SECONDARY PDP CONTEXT REJECT message, cause code 
indicating "unknown PDP context". If there exists a PDP context for the given TI, then the requested NSAPI is checked. 
If there exists an active PDP context with the same NSAPI, the network shall reject the activation with cause "NSAPI 
already used". Otherwise, the TFT in the request message is checked. If the TFT is invalid, the network shall reject the 
activation request with cause "Invalid TFT". If the TFT is valid but it is already used by another context of the same 
PDP address, the network shall reject the activation request with cause "TFT already used". Otherwise, the network 
shall accept the activation request by replying to the MS with an ACTIVATE SECONDARY PDP CONTEXT 
ACCEPT message. 
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6.1.3.3 



Figure 6.5/TS 24.008: MS initiated secondary PDP context activation procedure 



PDP context modification procedure 



The PDP context modification procedure is invoked by the network or by the MS, in order to change the QoS 
negotiated, the Radio priority level, or the TFT, negotiated during the PDP context activation procedure, the secondary 
PDP context activation procedure or at previously performed PDP context modification procedures. The procedure can 
be initiated by the network or the MS at any time when a PDP context is active. 

The network requested PDP context modification procedure may also be used to update the PDP address when external 
PDN address allocation is performed, in which case the MS receives the PDP address in the MODIFY PDP CONTEXT 
REQUEST (Network to MS direction) message. 

NOTE: The procedure may be initiated by the network due to an inter-SGSN Routing Area Updating when a PDP 
context is active. 



6.1.3.3.1 



Network initiated PDP Context Modification 



In order to initiate the procedure, the network sends the MODIFY PDP CONTEXT REQUEST message to the MS and 
starts timer T3386. The message shall contain the new QoS and the radio priority level and LLC SAPI that shall be used 
by the MS in GSM at the lower layers for the transmission of data related to the PDP context. 

Upon receipt of this message the MS shall reply with the MODIFY PDP CONTEXT ACCEPT message, if the MS 
accepts the new QoS and the indicated LLC SAPI. 

If the MS does not accept the new QoS or the indicated LLC SAPI, the MS shall initiate the PDP context deactivation 
procedure for the PDP context - the reject cause IE value of the DEACTIVATE PDP CONTEXT REQUEST message 
shall indicate "QoS not accepted". 

The network shall upon receipt of the MODIFY PDP CONTEXT ACCEPT message stop timer T3386. 
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In GSM, the network shall establish, reconfigure or continue using the logical link with the new QoS for the LLC SAPI 
indicated in the MODIFY PDP CONTEXT REQUEST message. 

In UMTS, the network shall establish, reconfigure or continue using the Radio Access Bearer with the new QoS 
indicated in the MODIFY PDP CONTEXT REQUEST message. 

6.1 .3.3.2 MS initiated PDP Context Modification accept by the network 

In order to initiate the procedure, the MS sends the MODIFY PDP CONTEXT REQUEST message to the network, 
enters the state PDP-MODIFY -PENDING and starts timer T3381. The message may contain the requested new QoS 
and/or the TFT and the requested LLC SAPI (used in GSM). 

Upon receipt of the MODIFY PDP CONTEXT REQUEST message, the network may reply with the MODIFY PDP 
CONTEXT ACCEPT message in order to accept the context modification. The reply message may contain the 
negotiated QoS and the radio priority level based on the new QoS profile and the negotiated LLC SAPI, that shall be 
used in GSM by the logical link. 

Upon receipt of the MODIFY PDP CONTEXT ACCEPT message, the MS shall stop the timer T338L If the offered 
QoS parameters received from the network differs from the QoS requested by the MS, the MS shall either accept the 
negotiated QoS or initiate the PDP context deactivation procedure. 

Note: When modification of QoS was requested by the MS, if the network does not accept the MS request, being unable 
to provide the requested QoS, it should maintain the QoS negotiated as previously negotiated or propose a new QoS. 
Therefore, the network would not reject the MS initiated PDP context modification request due to the unavailability of 
the required QoS. 

6.1 .3.3.3 MS initiated PDP Context Modification not accept by the network 

Upon receipt of a MODIFY PDP CONTEXT REQUEST message, the network may reject the MS initiated PDP 
context modification request by sending a MODIFY PDP CONTEXT REJECT message to the MS. The message shall 
contain a cause code that typically indicates one of the following: 

# 26: insufficient resources; 

# 83: invahd TFT; 

# 95 - 1 1 1: protocol errors. 

Upon receipt of a MODIFY PDP CONTEXT REJECT message, the MS shall stop timer T3381 and enter the state 
PDP-ACTIVE. 

6.1 .3.3.4 Abnormal cases 

a) Expiry of timers 

On the network side: 

On the first expiry of timer T3386, the network shall resend the MODIFY PDP CONTEXT REQUEST message reset 
and restart timer T3386. This retransmission is repeated four times, i.e. on the fifth expiry of timer T3386, the network 
may continue to use the previously negotiated QoS or it may initiate the PDP context deactivation procedure. 

In the MS: 

On the first expiry of timer T3381, the MS shall resend the MODIFY PDP CONTEXT REQUEST message reset 
and restart timer T338L This retransmission is repeated four times, i.e. on the fifth expiry of timer T3381, the MS 
may continue to use the previously negotiated QoS or it may initiate the PDP context deactivation procedure. 

b) Collision of MS and Network initiated PDP Context Modification Procedures 

A collision of a MS and network initiated PDP context modification procedures is identified by the MS if a 
MODIFY PDP CONTEXT REQUEST message is received from the network after the MS has sent a MODIFY 
PDP CONTEXT REQUEST message itself, and both messages contain the same TI and the MS has not yet 
received a MODIFY PDP CONTEXT ACCEPT message from the network. 

A collision is detected by the network in case a MODIFY PDP CONTEXT REQUEST message is received from 
the MS with the same TI as the MODIFY PDP CONTEXT REQUEST message sent to the MS. 
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In the case of such a collision, the network initiated PDP context modification shall take precedence over the MS 
initiated PDP context modification. The MS shall terminate internally the MS initiated PDP context modification 
procedure, enter the state PDP- Active and proceed with the network initiated PDP context modification 
procedure by sending a MODIFY PDP CONTEXT ACCEPT message. The network shall ignore the MODIFY 
PDP CONTEXT REQUEST message received in the state PDP-MODIFY -PENDING. The network shall 
proceed with the network initiated PDP context modification procedure as if no MODIFY PDP CONTEXT 
REQUEST message was received from the MS. 
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Figure 6.6/TS 24.008: Network initiated PDP context modification procedure 
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6.1.3.4 



Figure 6.7/TS 24.008: lUIS initiated PDP context modification procedure 



PDP context deactivation procedure 



The purpose of this procedure is to deactivate an existing PDP context between the MS and the network. The PDP 
context deactivation may be initiated by the MS or by the network. This procedure can also be used to deactivate 
secondary PDP contexts. The tear down indicator information element may be included in the DEACTIVATE PDP 
CONTEXT REQUEST message in order to indicate whether only the PDP context associated with this specific TI or all 
active PDP contexts sharing the same PDP address as the PDP context associated with this specific TI shall be 
deactivated. If the tear down indicator information element is not included in the DEACTIVATE PDP CONTEXT 
REQUEST message, only the PDP context associated with this specific TI shall be deactivated. 



6.1.3.4.1 



PDP context deactivation initiated by the MS 



In order to deactivate a PDP context, the MS sends a DEACTIVATE PDP CONTEXT REQUEST message to the 
network, enters the state PDP-INACTIVE-PENDING and starts timer T3390. The message contains the transaction 
identifier (TI) in use for the PDP context or secondary PDP context to be deactivated and a cause code that typically 
indicates one of the following causes: 

# 25: LLC or SNDCP failure(GSM only) ; 

# 26: insufficient resources; 

# 36: regular PDP context deactivation; or 

# 37: QoS not accepted. 

The network shall reply with the DEACTIVATE PDP CONTEXT ACCEPT message. Upon receipt of the 
DEACTIVATE PDP CONTEXT ACCEPT message, the MS shall stop timer T3390. In GSM, both the MS and the 
network shall initiate local release of the logical link if it is not used by another PDP context. In UMTS, the network 
shall initiate the release of Radio Access Bearer associated with this PDP context. 
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6.1.3.4.2 



PDP context deactivation initiated by the network 



In order to deactivate a PDP context, the network sends a DEACTIVATE PDP CONTEXT REQUEST message to the 
MS and starts timer T3395. The message contains the transaction identifier in use for the PDP context to be deactivated 
and a cause code that typically indicates one of the following causes: 

# 25: LLC or SNDCP failure (GSM only); 

# 36: regular PDP context deactivation; 

# 38: network failure; or 

# 39: reactivation requested. 

The MS shall, upon receipt of this message, reply with a DEACTIVATE PDP CONTEXT ACCEPT message. Upon 
receipt of the DEACTIVATE PDP CONTEXT ACCEPT message, the network shall stop the timer T3395. In GSM, 
both the MS and the network shall initiate local release of the logical link if it is not used by another PDP context. In 
UMTS, the network shall initiate the release of Radio Access Bearer associated with this PDP context. 

6.1 .3.4.3 Abnormal cases 

The following abnormal cases can be identified: 

a) Expiry of timers 

In the mobile station: 

On the first expiry of timer T3390, the MS shall resent the message DEACTIVATE PDP CONTEXT 
REQUEST and shall reset and restart the timer T3390. This retransmission is repeated four times, i.e. on the 
fifth expiry of timer T3390, the MS shall release all resources allocated and shall erase the PDP context 
related data. 

On the network side: 

On the first expiry of timer T3395, the network shall resent the message DEACTIVATE PDP CONTEXT 
REQUEST and shall reset and restart timer T3395. This retransmission is repeated four times, i.e. on the fifth 
expiry of timer T3395, the network shall erase the PDP context related data for that MS. 

b) Collision of MS and network initiated PDP context deactivation requests 

If the MS and the network initiated PDP context deactivation requests collide, the MS and the network shall each 
reply with the messages DEACTIVATE PDP CONTEXT ACCEPT and shall stop timer T3390 and T3395, 
respectively. 
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Figure 6.8/TS 24.008: MS initiated PDP context deactivation procedure 
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6.1.3.4 



Figure 6.9/TS 24.008: Network initiated PDP context deactivation procedure 



AA PDP context activation (FFS in UMTS) 



The purpose of this procedure is to anonymously establish a PDP context between the MS and the network for a 
specific QoS on a specific NSAPI. The AA PDP context activation shall only be initiated by the MS. 



6.1.3.4.1 



Successful AA PDP context activation initiated by the mobile station 



In order to activate an anonymous PDP context, the MS sends an ACTIVATE AA PDP CONTEXT REQUEST 
message to the network, enters the state PDP-ACTIVE-PENDING and starts timer T3380. As long as no auxiliary TLLI 
is allocated to the MS, a random TLLI is used for addressing on lower layers. 

Upon receipt of an ACTIVATE AA PDP CONTEXT REQUEST message, the network selects a radio priority level 
based on the QoS negotiated, assigns a AA-TID to the PDP context and sends an ACTIVATE AA PDP CONTEXT 
ACCEPT message to the MS. The message shall contain a the selected radio priority level and negotiated QoS allocated 
by the network. If the offered QoS parameters received from the network differ from the QoS requested by the MS, the 
MS shall accept the QoS offered by the network. If the LLC S API indicated by the network can not be supported by the 
MS, the MS shall initiate the implicit AA PDP context deactivation procedure. Upon receipt of the message 
ACTIVATE AA PDP CONTEXT ACCEPT, the MS shall stop timer T3380, shall enter the state PDP-ACTIVE and 
shall initiate establishment of the logical link for the LLC SAPI indicated by the network with the negotiated QoS. 



6.1.3.4.2 



Unsuccessful AA PDP context activation 



Upon receipt of the ACTIVATE AA PDP CONTEXT REQUEST message the network may indicate the failure of the 
MS initiated AA PDP context activation by sending the ACTIVATE AA PDP CONTEXT REJECT message to the MS. 
The message contains a cause code that typically indicates one of the following causes: 

# 32: service option not supported; 

# 34: service option temporarily out of order; 

# 90 - 111: protocol errors. 

The MS shall stop the timer T3380. 

6.1 .3.4.3 Abnormal cases 

a) Expiry of timers 

On the first expiry of timer T3380, the MS shall retransmit the ACTIVATE AA PDP CONTEXT REQUEST 
message and shall reset and restart timer T3380. 

This retransmission is repeated four times, i.e. on the fifth expiry of timer T3380, the MS shall indicate the failure 
of the AA PDP context activation procedure to the register functions, shall release all resources possibly allocated 
for this invocation and shall abort the procedure; no automatic AA PDP context activation re-attempt shall be 
performed. 
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Figure 6.10 TS 24.008: MS initiated AA PDP context activation procedure 



6.1.3.5 



AA PDP context deactivation 



6.1 .3.5.1 Implicit AA PDP context deactivation 

The implicit deactivation is performed without signalling message exchange as specified below. 
The AA PDP context on the network side shall be deactivated when: 

- the AA READY timer expires in the GMM-AA entity. 
The AA PDP context in the MS shall be deactivated when: 

- the AA READY timer expires in the GMM-AA entity; 
the MS changes the routing area; 

the LLC SAPI indicated by the network can not be supported by the MS during activation, or 
user requested. 



6.1.3.5.2 



Explicit AA PDP context deactivation 



An explicit AA PDP context deactivation shall only be initiated by the network. The procedure shall be performed when 
a misuse of the anonymous PDP context has been detected. 

In order to deactivate the AA PDP context, the network sends the message DEACTIVATE AA PDP CONTEXT 
REQUEST and starts timer T3397. The message shall contain the transaction identifier in use for the AA PDP context 
to be deactivated. After sending the message the network initiates the release of the logical link. 

The MS shall, upon receipt of this message, reply with the DEACTIVATE AA PDP CONTEXT ACCEPT message 
after the logical link has been released. 

Upon receipt of the DEACTIVATE AA PDP CONTEXT ACCEPT message, the network shall stop the timer T3397. 

6.1 .3.5.3 Abnormal cases 

a) Expiry of timers 

On the first expiry of timer T3397, the network shall retransmit the message DEACTIVATE AA PDP 
CONTEXT REQUEST and shall reset and restart timer T3397. 

This retransmission is repeated four times, i.e. on the fifth expiry of timer T3397, the network shall release all 
remaining resources allocated for that MS and shall erase the AA PDP context related data for that MS. 
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Figure 6.11/TS 24.008: Network initiated AA PDP context deactivation procedure 

b) Lower layer failure 

If a lower layer failure is indicated before the DEACTIVATE AA PDP CONTEXT ACCEPT message is sent, 
the MS shall abort the procedure and shall locally de-allocate the P-TMSI from the LLC sublayer. 

If a lower layer failure is indicated before the DEACTIVATE AA PDP CONTEXT ACCEPT message is received, 
the network shall abort the procedure and shall locally de-allocate the P-TMSI from the LLC sublayer. 



6.1.3.6 



Receiving a SM STATUS message by a SM entity. 



If the SM entity of the MS receives a SM STATUS message no state transition and no specific action shall be taken as 
seen from the radio interface, i.e. local actions are possible. 

The actions to be taken on receiving a SM STATUS message in the network are an implementation dependent option. 



7 Examples of structured procedures 

See 23.108 



8 



Handling of unknown, unforeseen, and erroneous 
protocol data 



8.1 



General 



The procedures specified in TS 24.008 and call -related supplementary service handling in TS 24.010 apply to those 
messages which pass the checks described in this section. 

This section also specifies procedures for the handling of unknown, unforeseen, and erroneous protocol data by the 
receiving entity. These procedures are called "error handling procedures", but in addition to providing recovery 
mechanisms for error situations they define a compatibility mechanism for future extensions of the protocols. 

Error handling concerning the value part of the Facility IE and of the SS Version Indicator IE are not in the scope of this 
technical specification. It is defined in TS 24.010 and the GSM 04. 8x series. 

Subsections 8.1 to 8.8 shall be applied in order of precedence. 

Most error handling procedures are mandatory for the mobile station. 

Detailed error handling procedures in the network are implementation dependent and may vary from PLMN to PLMN. 
However, when extensions of this protocol are developed, networks will be assumed to have the error handling that is 
indicated in this section as mandatory ("shall") and that is indicated as strongly recommended ("should"). Sections 8.2, 
8.3, 8.4, 8.5 and 8.7.2 do not apply to the error handling in the network applied to the receipt of initial layer 3 message: 
If the network diagnoses an error described in one of these sections in the initial layer 3 message received from the 
mobile station, it shall either: 

try to recognize the classmark and then take further implementation dependent actions; or 
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- release the RR-connection. 

Also, the error handling of the network is only considered as mandatory or strongly recommended when certain 
thresholds for errors are not reached during a dedicated connection. 

In this section the following terminology is used: 

- An IE is defined to be syntactically incorrect in a message if it contains at least one value defined as "reserved" 
in section 10, or if its value part violates rules of section 10. However it is not a syntactical error that a type 4 IE 
specifies in its length indicator a greater length than defined in section 10. 

A message is defined to have semantically incorrect contents if it contains information which, possibly 
dependent on the state of the receiver, is in contradiction to the resources of the receiver and/or to the procedural 
part (i.e. sections 3, 4, 5) of TS 24.008, TS 24.010, or relevant GSM 04.8X series. 

8.2 Message too short 

When a message is received that is too short to contain a complete message type information element, that message 
shall be ignored, cf. TS 24.007. 

8.3 Unknown or unforeseen transaction identifier 
8.3.1 Call Control 

The mobile station and network shall reject a SETUP, EMERGENCY SETUP or START CC message received with 
octet 1 part of the TI value coded as "111" by sending RELEASE COMPLETE with cause #81 "Invalid transaction 
identifier value" The TI value in RELEASE COMPLETE shall be the complete TI value including all possible 
extension octets from the message that caused the rejection . 

Any message other than SETUP, EMERGENCY SETUP or START CC received with octet 1 part of the TI value 
coded as "111" shall be ignored. 

. For a call control message received with octet 1 part of the TI value not coded as "111", the following procedures shall 
apply: 

a) For a network that does not support the "Network initiated MO call" option and for all mobile stations: 

Whenever any call control message except EMERGENCY SETUP, SETUP or RELEASE COMPLETE is 
received specifying a transaction identifier which is not recognized as relating to an active call or to a call in 
progress, the receiving entity shall send a RELEASE COMPLETE message with cause #8 1 "invalid transaction 
identifier value" using the received transaction identifier value and remain in the Null state. 

For a network that does support the "Network initiated MO call" option $(CCBS)$: 

Whenever any call control message except EMERGENCY SETUP, SETUP, START CC or RELEASE 
COMPLETE is received specifying a transaction identifier which is not recognized as relating to an active call or 
to a call in progress, the receiving entity shall send a RELEASE COMPLETE message with cause #8 1 "invalid 
transaction identifier value" using the received transaction identifier value and remain in the Null state. 

b) When a RELEASE COMPLETE message is received specifying a transaction identifier which is not recognized 
as relating to an active call or to a call in progress, the MM connection associated with that transaction identifier 
shall be released. 

c) For a network that does not support the "Network initiated MO call" option and for all mobile stations: 

When an EMERGENCY SETUP or, a SETUP message is received specifying a transaction identifier which is 
not recognized as relating to an active call or to a call in progress, and with a transaction identifier flag 
incorrectly set to "1", this message shall be ignored. 

For a network that does support the "Network initiated MO call" option $(CCBS)$: 

When an EMERGENCY SETUP, a START CC or, a SETUP message is received specifying a transaction 
identifier which is not recognised as relating to an active call or to a call in progress, and with a transaction 
identifier flag incorrectly set to "1", this message shall be ignored. 
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d) When a SETUP message is received by the mobile station specifying a transaction identifier which is recognized 
as relating to an active call or to a call in progress, this SETUP message shall be ignored. 

e) For a network that does not support the "Network initiated MO call" option: 

When an EMERGENCY SETUP message or a SETUP message is received by the network specifying a 
transaction identifier which is recognized as relating to an active call or to a call in progress, this message need 
not be treated and the network may perform other actions. 

For a network that does support the "Network initiated MO call" option $(CCBS)$: 

When an EMERGENCY SETUP message or a START CC message is received by the network specifying a 
transaction identifier which is recognised as relating to an active call or to a call in progress, this message need 
not be treated and the network may perform other actions. 

The same applies to a SETUP message unless the transaction has been established by a START_CC message 
and the network is in the "recall present" state (N0.6). 

8.3.2 Session Management 

The mobile station and network shall reject a session management message other than SM-STATUS received with TI 
EXT bit = by immediately sending an SM-STATUS message using the received 2 octet TI value encoding. Otherwise, 
the following procedures shall apply: 

a) Whenever any session management message except ACTIVATE PDP CONTEXT REQUEST, ACTIVATE AA 
PDP CONTEXT REQUEST or SM-STATUS is received by the network specifying a transaction identifier 
which is not recognized as relating to an active context or to a context that is in the process of activation or 
deactivation or has been [recently] deactivated, the network should send a SM-STATUS message with cause #81 
"invalid transaction identifier value" using the received transaction identifier value and remain in the PDP- 
INACTIVE state. 

b) Whenever any session management message except REQUEST PDP CONTEXT ACTIVATION or SM- 
STATUS is received by the MS specifying a transaction identifier which is not recognized as relating to an 
active context or to a context that is in the process of activation or deactivation or has been [recently] 
deactivated, the MS shall send a SM-STATUS message with cause #81 "invalid transaction identifier value" 
using the received transaction identifier value and remain in the PDP-INACTIVE state. 

c) When an ACTIVATE AA PDP CONTEXT REQUEST or REQUEST PDP CONTEXT ACTIVATION message 
is received with a transaction identifier flag set to "1", this message shall be ignored. 

d) When an ACTIVATE PDP CONTEXT REQUEST message is received specifying a transaction identifier which 
is not recognized as relating to a context that is in the process of activation, and with a transaction identifier flag 
set to "1", this message shall be ignored. 

e) Whenever an ACTIVATE PDP CONTEXT REQUEST or ACTIVATE AA PDP CONTEXT REQUEST 
message is received by the network specifying a transaction identifier relating to a PDP context not in state 
PDP-INACTIVE, the network shall deactivate the old PDP context relating to the received transaction identifier 
without notifying the MS. Furthermore, the network shall continue with the activation procedure of a new PDP 
context as indicated in the received message. 

f) Whenever a REQUEST PDP CONTEXT ACTIVATION message is received by the MS specifying a transaction 
identifier relating to a PDP context not in state PDP-INACTIVE, the MS shall locally deactivate the old PDP 
context relating to the received transaction identifier. Furthermore, the MS shall continue with the activation 
procedure of a new PDP context as indicated in the received message. 

8.4 Unknown or unforeseen message type 

If a mobile station receives an RR, MM or CC message with message type not defined for the PD or not implemented 
by the receiver in unacknowledged mode, it shall ignore the message. 

If a mobile station receives an RR, MM or CC message with message type not defined for the PD or not implemented 
by the receiver in acknowledged mode, it shall return a status message (STATUS, MM STATUS depending on the 
protocol discriminator) with cause # 97 "message type non-existent or not implemented". 
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If a mobile station receives a GMM message or SM message with message type not defined for the PD or not 
implemented by the receiver, it shall return a status message (GMM STATUS or SM STATUS depending on the 
protocol discriminator) with cause # 97 "message type non-existent or not implemented". 

If the network receives an MM message with message type not defined for the PD or not implemented by the receiver in 
a protocol state where reception of an unsolicited message with the given PD from the mobile station is not foreseen in 
the protocol, the network actions are implementation dependent. Otherwise, if the network receives a message with 
message type not defined for the PD or not implemented by the receiver, it shall ignore the message except that it 
should return a status message (STATUS, MM STATUS, GMM STATUS or SM STATUS depending on the protocol 
discriminator) with cause #97 "message type non-existent or not implemented". 

NOTE: A message type not defined for the PD in the given direction is regarded by the receiver as a message 
type not defined for the PD, see TS 24.007 [20]. 

If the mobile station receives a message not compatible with the protocol state, the mobile station shall ignore the 
message except for the fact that, if an RR connection exists, it returns a status message (STATUS, MM STATUS 
depending on the protocol discriminator) with cause #98 "Message type not compatible with protocol state". When the 
message was a GMM message the GMM-STATUS message with cause #98 "Message type not compatible with 
protocol state" shall be returned. When the message was a SM message the SM-STATUS message with cause #98 
"Message type not compatible with protocol state" shall be returned. 

If the network receives a message not compatible with the protocol state, the network actions are implementation 
dependent. 

NOTE: The use by GMM and SM of unacknowledged LLC may lead to messages "not compatible with the 
protocol state". 



8.5 Non-semantical mandatory information element errors 

When on receipt of a message, 

an "imperative message part" error; or 

a "missing mandatory IE" error 
is diagnosed or when a message containing: 

a syntactically incorrect mandatory IE; or 

an IE unknown in the message, but encoded as "comprehension required" (see section GSM 04.07); or 

an out of sequence IE encoded as "comprehension required" (see section GSM 04.07) 
is received, 

the mobile station shall proceed as follows: 

If the message is not one of the messages listed in sections 8.5.1, 8.5.2, 8.5.3, 8.5.4 and 8.5.5 a), b) or c), the 
mobile station shall ignore the message except for the fact that, if an RR connection exists, it shall return a status 
message (STATUS, MM STATUS depending on the protocol discriminator) with cause # 96 "Invalid mandatory 
information". If the message was a GMM message the GMM-STATUS message with cause #96 " Invalid 
mandatory information" shall be returned. If the message was an SM message the SM-STATUS message with 
cause # 96 "invalid mandatory information" shall be returned. 

the network shall proceed as follows: 

When the message is not one of the messages listed in section 8.5.3 b), c), d) or e) and 8.5.5 a), b), d) or e), 
the network shall either 

try to treat the message (the exact further actions are implementation dependent), or 

ignore the message except that it should return a status message (STATUS, or MM STATUS (depending 
on the protocol discriminator), GMM STATUS, or SM STATUS) with cause # 96 "Invalid mandatory 
information" . 
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8.5.1 Radio resource management 

See 04.18 

8.5.2 Mobility management 

No exceptional cases are described for mobility management messages. 

8.5.3 Call control 

a) If the message is a SETUP message, a RELEASE COMPLETE message with cause # 96 "invalid mandatory 
information" shall be returned. 

b) If the message is a DISCONNECT message, a RELEASE message shall be returned with cause value # 96 
"invalid mandatory information" and section 5.4. "call clearing" applies as normal. 

c) If the message is a RELEASE message, a RELEASE COMPLETE message shall be returned with cause value # 
96 "invalid mandatory information". 

d) If the message is a RELEASE COMPLETE message, it shall be treated as a normal RELEASE COMPLETE 
message. 

e) If the message is a HOLD REJECT or RETRIEVE REJECT message, it shall be treated as a normal HOLD 
REJECT or RETRIEVE REJECT message. 

f) If the message is a STATUS message and received by the network, a RELEASE COMPLETE message may be 
returned with cause value # 96 "invalid mandatory information". 

8.5.4 GMM mobility management 

No exceptional cases are described for mobility management messages. 

8.5.5 Session management 

a) If the message is a DEACTIVATE PDP CONTEXT REQUEST, a DEACTIVATE PDP CONTEXT ACCEPT 
message shall be returned. All resources allocated for that context shall be released. 

b) If the message is a DEACTIVATE AA PDP CONTEXT REQUEST, a DEACTIVATE AA PDP CONTEXT 
ACCEPT message shall be returned. All resources allocated for that context shall be released. 

c) If the message is a REQUEST PDP CONTEXT ACTIVATION, a REQUEST PDP CONTEXT REJECT 
message with cause # 96 "Invalid mandatory information" shall be returned. 

d) If the message is an ACTIVATE PDP CONTEXT REQUEST, an ACTIVATE PDP CONTEXT REJECT 
message with cause # 96 "Invalid mandatory information" shall be returned. 

If the message is an ACTIVATE AA PDP CONTEXT REQUEST, an ACTIVATE AA PDP CONTEXT 
REJECT message with cause # 96 "Invalid mandatory information" shall be returned. 

8.6 Unknown and unforeseen lEs in the non-imperative 
message part 

8.6.1 lEIs unknown in the message 

The MS shall ignore all lEs unknown in a message which are not encoded as "comprehension required" (see GSM 
04.07). 

The network shall take the same approach. 



8.6.2 Out of sequence lEs 



The MS shall ignore all out of sequence lEs in a message which are not encoded as "comprehension required" (see 
TS 24.007). 
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The network should take the same approach. 

8.6.3 Repeated lEs 

If an information element with format T, TV, or TLV is repeated in a message in which repetition of the information 
element is not specified in section 9 of this technical specification, only the contents of the information element 
appearing first shall be handled and all subsequent repetitions of the information element shall be ignored. When 
repetition of information elements is specified, only the contents of specified repeated information elements shall be 
handled. If the limit on repetition of information elements is exceeded, the contents of information elements appearing 
first up to the limit of repetitions shall be handled and all subsequent repetitions of the information element shall be 
ignored. 

The network should follow the same procedures. 

8.7 Non-imperative message part errors 

This category includes: 

syntactically incorrect optional lEs; 
conditional IE errors. 

8.7.1 Syntactically incorrect optional lEs 

The MS shall treat all optional lEs that are syntactically incorrect in a message as not present in the message. 
The network shall take the same approach. 

8.7.2 Conditional IE errors 

When the MS upon receipt of an RR, MM or CC message diagnoses a "missing conditional IE" error or an "unexpected 
conditional IE" error or when it receives an RR, MM or CC message containing at least one syntactically incorrect 
conditional IE, it shall ignore the message except for the fact that, if an RR connection exists, it shall return a status 
message (STATUS, or MM STATUS depending on the PD) with cause value # 100 "conditional IE error". 

When the MS upon receipt of a GMM or SM message diagnoses a "missing conditional IE" error or an "unexpected 
conditional IE" error or when it receives a GMM or SM message containing at least one syntactically incorrect 
conditional IE, it shall ignore the message and it shall return a status message (GMM STATUS or SM STATUS 
depending on the PD) with cause value #100 "conditional IE error". 

When the network receives a message and diagnose a "missing conditional IE" error or an "unexpected conditional IE" 
error or when it receives a message containing at least one syntactically incorrect conditional IE, the network shall 
either 

try to treat the message (the exact further actions are implementation dependent), or 

- ignore the message except that it should return a status message (STATUS, MM STATUS, GMM STATUS or 
SM STATUS depending on the protocol discriminator) with cause # 100 "conditional IE error". 

8.8 Messages with semantically incorrect contents 

When a message with semantically incorrect contents is received, the foreseen reactions of the procedural part of TS 
24.008 (i.e. of sections 3, 4, 5) are performed. If however no such reactions are specified, the MS shall ignore the 
message except for the fact that, if an RR connection exists, it returns a status message (STATUS, or MM STATUS 
depending on the PD) with cause value # 95 "semantically incorrect message". 

The network should follow the same procedure except that a status message is not normally transmitted. 

Semantic checking of the Facility information element value part (defined in TS 24.080) is the subject of the technical 
specifications TS 24.010 and the GSM 04.8x series. 
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9 Message functional definitions and contents 

This section defines the structure of the messages of those layer 3 protocols defined in TS 24.008. These are standard 
L3 messages as defined in TS 24.007. 

Each definition given in the present section includes: 

a) a brief description of the message direction and use, including whether the message has: 

1. Local significance, i.e. relevant only on the originating or terminating access; 

2. Access significance, i.e. relevant in the originating and terminating access, but not in the network; 

3. Dual significance, i.e. relevant in either the originating or terminating access and in the network; or 

4. Global significance, i.e. relevant in the originating and terminating access and in the network. 

b) a table listing the information elements known in the message and their order of their appearance in the message. 
In messages for circuit-switched call control also a shift information element shall be considered as known even 
if not included in the table. All information elements that may be repeated are explicitly indicated. ( V and LV 
formatted lEs, which compose the imperative part of the message, occur before T, TV, and TLV formatted IBs 
which compose the non-imperative part of the message, cf TS 24.007.) In a (maximal) sequence of consecutive 
information elements with half octet length, the first information element with half octet length occupies bits 1 to 
4 of octet N, the second bits 5 to 8 of octet N, the third bits 1 to 4 of octet Nh-1 etc. Such a sequence always has 
an even number of elements. 

For each information element the table indicates: 

1 . the information element identifier, in hexadecimal notation, if the IE has format T, TV, or TLV. Usually, 
there is a default lEI for an information element type; default lEIs of different IE types of the same protocol 
are different. If the lEI has half octet length, it is specified by a notation representing the lEI as a 
hexadecimal digit followed by a "-" (example: B-). 

NOTE The same lEI may be used for different information element types in different messages of the same 
protocol.2. the name of the information element (which may give an idea of the semantics of the element). 
The name of the information element (usually written in italics) followed by "IE" or "information element" is 
used in TS 24.008 as reference to the information element within a message. 

3. the name of the type of the information element (which indicates the coding of the value part of the IE), and 
generally, the referenced subsection of section 10 of TS 24.008 describing the value part of the information 
element. 

4. the presence requirement indication (M, C, or O) for the IE as defined in TS 24.007. 

5. The format of the information element (T, V, TV, LV, TLV) as defined in TS 24.007. 

6. The length of the information element (or permissible range of lengths), in octets, in the message, where "?" 
means that the maximum length of the IE is only constrained by link layer protocol, and in the case of the 
Facility IE by possible further conditions specified in TS 24.010. This indication is non-normative. 

c) subsections specifying, where appropriate, conditions for lEs with presence requirement C or O in the relevant 
message which together with other conditions specified in TS 24.008 define when the information elements shall 
be included or not, what non-presence of such lEs means, and - for lEs with presence requirement C - the static 
conditions for presence and/or non-presence of the lEs (cf TS 24.007). 

9.1 IVIessages for Radio Resources management 

See 04.18 

9.2 Messages for mobility management 

Table 9.2.1/TS 24.008 summarizes the messages for mobility management. 
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Table 9.2.1/TS 24.008: Messages for mobility management 



Registration messages: 


Reference 


IMSI DETACH INDICATION 


9.2.12 


LOCATION UPDATING ACCEPT 


9.2.13 


LOCATION UPDATING REJECT 


9.2.14 


LOCATION UPDATING REQUEST 


9.2.15 


Security messages: 


Reference 


AUTHENTICATION REJECT 


9.2.1 


AUTHENTICATION REOUEST 


9.2.2 


AUTHENTICATION RESPONSE 


9.2.3 


IDENTITY REQUEST 


9.2.10 


IDENTITY RESPONSE 


9.2.11 


TMSI REALLOCATION COMMAND 


9.2.17 


TMSI REALLOCATION COMPLETE 


9.2.18 


Connection management messages: 


Reference 


CM SERVICE ACCEPT 


9.2.5 


CM SERVICE REJECT 


9.2.6 


CM SERVICE ABORT 


9.2.7 


CM SERVICE REOUEST 


9.2.9 


CM RE-ESTABLISHMENT REQUEST 


9.2.4 


ABORT 


9.2.8 


NOTIFICATION RESPONSE 


9.2.20 


Miscellaneous message: 


Reference 


MM INFORMATION 


9.2.15a 


MM STATUS 


9.2.16 


MM NULL 


9.2.19 







9.2.1 Authentication reject 



This message is sent by the network to the mobile station to indicate that authentication has failed (and that the 
receiving mobile station shall abort all activities). See table 9.2.2/TS 24.008. 

Message type: AUTHENTICATION REJECT 

Significance: dual 

Direction: network to mobile station 

Table 9.2.2/TS 24.008: AUTHENTICATION REJECT message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Mobility management 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Skip Indicator 


Skip Indicator 
10.3.1 


M 


V 


1/2 




Authentication Reject 
message type 


Message type 
10.4 


M 


V 


1 



9.2.2 Autinentication request 



This message is sent by the network to the mobile station to initiate authentication of the mobile station identity. See 
table 9.2.3/TS 24.008. 

Message type: AUTHENTICATION REQUEST 

Significance: dual 

Direction: network to mobile station 
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Table 9.2.3/TS 24.008: AUTHENTICATION REQUEST message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Mobility management 


Protocol discriminator 


M 


V 


1/2 




protocol discriminator 


10.2 










Skip Indicator 


Skip Indicator 
10.3.1 


M 


V 


1/2 




Authentication Request 


Message type 


M 


V 


1 




message type 


10.4 










Ciphering key sequence 


Ciphering key sequence 


M 


V 


1/2 




number 


number 
10.5.1.2 










Spare half octet 


Spare half octet 
10.5.1.8 


M 


V 


1/2 




Authentication 


Auth. parameter RAND 


M 


V 


16 




parameter RAND (UMTS 
challenge or GSM challenge) 


10.5.3.1 








20 


Authentication 
Parameter AUTN 


Auth. parameter AUTN 
10.5.3.1.2 


O 


TLV 


14-19 



9.2.2.1 



Authentication Parameter AUTN 



This IE shall be present if and only if the authentication challenge is a UMTS authentication challenge.The presence or 
absence of this IE defines- in the case of its absence- a GSM authentication challenge or- in the case of its presence- a 
UMTS authentication challenge. 



9.2.3 Authentication response 



This message is sent by the mobile station to the network to deliver a calculated response to the network. See 
table 9.2.4/TS 24.008. 

Message type: AUTHENTICATION RESPONSE 

Significance: dual 

Direction: mobile station to network 

Table 9.2.4/TS 24.008: AUTHENTICATION RESPONSE message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Mobility management 


Protocol discriminator 


M 


V 


1/2 




protocol discriminator 


10.2 










Skip Indicator 


Skip Indicator 
10.3.1 


M 


V 


1/2 




Authentication Response 


Message type 


M 


V 


1 




message type 


10.4 
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Authentication Response 
parameter 


Auth. Response parameter 
10.5.3.2 


M 


V 


4 


21 


Authenticatio Response 
Parameter (extension) 


Auth. Response parameter 
10.5.3.2.1 


O 


TLV 


14 



9.2.3.1 



Authentication Response Parameter 



This IE contains the SRES, if it was a GSM authentication challenge, or the RES (all or just the 4 most significant 
octets of) if it was a UMTS authentication challenge (see also 9.2.3.2). 

9.2.3.2 Authentication Response Parameter (extension) 

This IE shall be included if and only if the authentication challenge was a UMTS authentication challenge and the RES 
parameter is greater than 4 octets in length. It shall contain the least significant remaining bits of the RES (the four 
most significant octets shall be sent in the Authentication Response Parameter IE (see 9.2.3.1)) 

9.2.3a CS Authentication Failure (UMTS authentication challenge) 

This message is sent by the mobile station to the network to indicate that authentication of the network has failed. See 
table 9.2.4a/TS 24.008. 

Message type: CS AUTHENTICATION FAILURE 

Significance: dual 

Direction: mobile station to network 

Table 9.2.4a/TS 24.008: CS AUTHENTICATION FAILURE message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Mobility management 
Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Skip Indicator 


Skip Indicator 
10.3.1 


M 


V 


1/2 




CS Authentication Failure 
Message type 


Message type 
10.4 


M 


V 


1 




Reject Cause 


Reject Cause 
10.5.3.6 


M 


V 


1 


22 


Response from SIM 


Response from SIM 
10.5.3.2.2 





TLV 


30-32 



9.2.3a.1 Response from SIM 

This IE shall be sent if and only if the reject cause was 'CS synch failure.' It shall include the response to the 
authentication challenge from the SIM, which is made up of the RANDms and the AUTS parameters (see TS 33.102). 

9.2.4 CM Re-establishment request 

This message is sent by the mobile station to the network to request re-establishment of a connection if the previous one 
has failed. See table 9.2.5/TS 24.008. 

Message type: CM RE-ESTABLISHMENT REQUEST 

Significance: dual 

Direction: mobile station to network 
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Table 9.2.5/TS 24.008: CM RE-ESTABLISHMENT REQUEST message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Mobility management 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Skip Indicator 


Skip Indicator 
10.3.1 


M 


V 


1/2 




CM Re-Establishment 
Request message type 


Message type 
10.4 


M 


V 


1 




Ciphering key sequence 
number 


Ciphering key sequence 

number 

10.5.1.2 


M 


V 


Vi 




Spare half octet 


Spare half octet 
10.5.1.8 


M 


V 


1/2 




Mobile station 
classmark 


Mobile station 

classmark 2 
10.5.1.6 


M 


LV 


4 




Mobile identity 


Mobile identity 
10.5.1.4 


M 


LV 


2-9 


13 


Location area 
identification 


Location area 
identification 

10.5.1.3 


C 


TV 


6 



9.2.4.1 



Location area identification 



The location area identification information element shall appear when a TMSl is used as mobile identity, to render that 
mobile identity non-ambiguous. This is the LAI stored in the SIM. 

9.2.4.2 Mobile Station Classmark 

This IE shall include for multiband mobile station the Classmark 2 corresponding to the frequency band in use. 



9.2.5 CM service accept 



This message is sent by the network to the mobile station to indicate that the requested service has been accepted. See 
table 9.2.6/TS 24.008. 

Message type: CM SERVICE ACCEPT 

Significance: dual 

Direction: network to mobile station 

Table 9.2.6/TS 24.008: CM SERVICE ACCEPT message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Mobility management 
protocol discriminator 


Protocol discriminator 

10.2 


M 


V 


1/2 
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Skip Indicator 


Skip Indicator 
10.3.1 


M 


V 


1/2 




CM Service Accept 
message type 


Message type 
10.4 


M 


V 


1 



9.2.5a CM service prompt $(CCBS)$ 



A mobile station that does not support the "Network initiated MO call" option shall treat this message as a message 
with message type not defined for the PD. 

This message is sent by the network to the mobile station to request the mobile to establish a service for the specified 
CM protocol using the specified SAPI, e.g. circuit switched connection establishment on SAPI 0, supplementary 
services activation on SAPI 0, or short message transfer on SAPI 3. See Table 9.2.7/TS 24.008. 

Message type: CM SERVICE PROMPT 

Significance: dual 

Direction: network to mobile station 

Table 9.2.7/TS 24.008: CM SERVICE PROMPT message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Mobihty management 
protocol discriminator 


Protocol discriminator 

10.2 


M 


V 


1/2 




Skip Indicator 


Skip Indicator 
10.3.1 


M 


V 


1/2 




CM Service Prompt 
message type 


Message type 
10.4 


M 


V 


1 




PD and SAPI of CM 


PD and SAPI 
10.5.1.10a 


M 


V 


1 



9.2.6 CM service reject 



This message is sent by the network to the mobile station to indicate that the requested service cannot be provided. See 
table 9.2.8/TS 24.008. 

Message type: CM SERVICE REJECT 

Significance: dual 

Direction: network to mobile station 

Table 9.2.8/TS 24.008: CM SERVICE REJECT message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Mobihty management 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Skip Indicator 


Skip Indicator 
10.3.1 


M 


V 


1/2 




CM Service Reject 


Message type 


M 


V 


1 
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message type 


10.4 










Reject cause 


Reject cause 
10.5.3.6 


M 


V 


1 



9.2.7 CM service abort 

This message is sent by the mobile station to the network to request the abortion of the first MM connection 
establishment in progress and the release of the RR connection. See table 9.2.9/TS 24.008. 

Message type: CM SERVICE ABORT 

Significance: dual 

Direction: mobile station to network 

Table 9.2.9/TS 24.008: CM SERVICE ABORT message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




MobiUty management 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Skip Indicator 


Skip Indicator 
10.3.1 


M 


V 


1/2 




CM Service Abort 
message type 


Message type 
10.4 


M 


V 


1 



9.2.8 Abort 

This message is sent by the network to the mobile station to initiate the abortion of all MM connections and to indicate 
the reason for the abortion. See table 9.2.10/TS 24.008. 

Message type: ABORT 

Significance: dual 

Direction: network to mobile station 

Table 9.2.10/TS 24.008: ABORT message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Mobility management 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Skip Indicator 


Skip Indicator 
10.3.1 


M 


V 


1/2 




Abort 
message type 


Message type 
10.4 


M 


V 


1 




Reject cause 


Reject cause 
10.5.3.6 


M 


V 


1 
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9.2.9 CM service request 



This message is sent by the mobile station to the network to request a service for the connection management sublayer 
entities, e.g. circuit switched connection establishment, supplementary services activation, short message transfer, 
location services. See table 9.2.11/TS 24.008. 

Message type: CM SERVICE REQUEST 

Significance: dual 

Direction: mobile station to network 

Table 9.2.11/TS 24.008: CM SERVICE REQUEST message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Lengtli 




Mobility management 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


Vi 




Skip Indicator 


Skip Indicator 
10.3.1 


M 


V 


Vi 




CM Service Request 
message type 


Message type 
10.4 


M 


V 


1 




CM service type 


CM service type 
10.5.3.3 


M 


V 


1/2 




Ciphering key sequence 
number 


Ciphering key sequence 

number 

10.5.1.2 


M 


V 


Vl 




Mobile station 
classmark 


Mobile station 
classmark 2 
10.5.1.6 


M 


LV 


4 




Mobile identity 


Mobile identity 
10.5.1.4 


M 


LV 


2-9 


8- 


Priority 


Priority Level 
10.5.1.11 


O 


TV 


1 



9.2.9.1 Mobile Station Classmark 

This IE shall include for multiband mobile station the Classmark 2 corresponding to the frequency band in use. 

9.2.9.2 Priority 

May be included by mobile station supporting eMLPP to indicate the priority requested. 
This information element is only meaningful when the CM service type is: 

Mobile originating call establishment; 

Emergency call establishment; 

Voice group call establishment; 

Voice broadcast call establishment. 
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9.2.10 Identity request 



This message is sent by the network to the mobile station to request a mobile station to submit the specified identity to 
the network. See table 9.2.12/TS 24.008. 

Message type: IDENTITY REQUEST 

Significance: dual 

Direction: network to mobile station 

Table 9.2.12/TS 24.008: IDENTITY REQUEST message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Mobility management 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Skip Indicator 


Skip Indicator 
10.3.1 


M 


V 


1/2 




Identity Request 
message type 


Message type 
10.4 


M 


V 


1 




Identity type 


Identity type 
10.5.3.4 


M 


V 


1/2 




Spare half octet 


Spare half octet 
10.5.1.8 


M 


V 


1/2 



9.2. 11 Identity response 



This message is sent by the mobile station to the network in response to an IDENTITY REQUEST message providing 
the requested identity. See table 9.2.13/TS 24.008. 

Message type: IDENTITY RESPONSE 

Significance: dual 

Direction: mobile station to network 

Table 9.2.13/TS 24.008: IDENTITY RESPONSE message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Mobility management 
protocol discriminator 


Protocol discriminator 

10.2 


M 


V 


1/2 




Skip Indicator 


Skip Indicator 
10.3.1 


M 


V 


1/2 




Identity Response 
message type 


Message type 
10.4 


M 


V 


1 




Mobile identity 


Mobile identity 
10.5.1.4 


M 


LV 


2-10 
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9.2.12 IMSI detach indication 

This message is sent by the mobile station to the network to set a deactivation indication in the network. See 
table 9.2.14/TS 24.008. 

Message type: IMSI DETACH INDICATION 

Significance: dual 

Direction: mobile station to network 

Table 9.2.14/TS 24.008: IMSI DETACH INDICATION message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Mobility management 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Skip Indicator 


Skip Indicator 
10.3.1 


M 


V 


1/2 




IMSI Detach Indication 
message type 


Message type 
10.4 


M 


V 


1 




Mobile station 
classmark 


Mobile station 
classmark 1 
10.5.1.5 


M 


V 


1 




Mobile identity 


Mobile identity 
10.5.1.4 


M 


LV 


2-9 



9.2.12.1 Mobile Station Classmark 

This IE shall include for multiband mobile station the Classmark 1 corresponding to the frequency band in use. 

9.2.13 Location updating accept 

This message is sent by the network to the mobile station to indicate that updating or IMSI attach in the network has 
been completed. See table 9.2.15/TS 24.008. 

Message type: LOCATION UPDATING ACCEPT 

Significance: dual 

Direction: network to mobile station 
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Table 9.2.1 5/TS 24.008: LOCATION UPDATING ACCEPT message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Mobility management 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Skip Indicator 


Skip Indicator 
10.3.1 


M 


V 


1/2 




Location Updating 
Accept message type 


Message type 
10.4 


M 


V 


1 




Location area 
identification 


Location area 
identification 
10.5.1.3 


M 


V 


5 


17 


Mobile identity 


Mobile identity 
10.5.1.4 


O 


TLV 


3-10 


Al 


Follow on proceed 


Follow on proceed 

10.5.3.7 


O 


T 


1 


A2 


CTS permission 


CTS permission 
10.5.3.10 





T 


1 



9.2.13.1 Follow on proceed 

The follow on proceed information element appears if the network wishes to indicate that the mobile station may 
attempt an MM connection establishment using the same RR connection. 

9.2.13.2 CTS permission 

The CTS permission information element appears if the network wishes to allow the mobile station to use GSM- 
Cordless Telephony System in the Location Area. 

9.2.14 Location updating reject 

This message is sent by the network to the mobile station to indicate that updating or IMSl attach has failed. See 
table 9.2.16/TS 24.008. 

Message type: LOCATION UPDATING REJECT 

Significance: dual 

Direction: network to mobile station 
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Table 9.2.1 6/TS 24.008: LOCATION UPDATING REJECT message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Mobility management 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Skip Indicator 


Skip Indicator 
10.3.1 


M 


V 


1/2 




Location Updating 
Reject message type 


Message type 
10.4 


M 


V 


1 




Reject cause 


Reject cause 
10.5.3.6 


M 


V 


1 



9.2.15 Location updating request 



This message is sent by the mobile station to the network either to request update of its location file (normal updating or 
periodic updating) or to request IMSI attach. See table 9.2.17/TS 24.008. 

Message type: LOCATION UPDATING REQUEST 

Significance: dual 

Direction: mobile station to network 
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Table 9.2.1 7/TS 24.008: LOCATION UPDATING REQUEST message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Mobility management 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Skip Indicator 


Skip Indicator 
10.3.1 


M 


V 


1/2 




Location Updating 
Request message type 


Message type 
10.4 


M 


V 


1 




Location updating type 


Location updating type 
10.5.3.5 


M 


V 


1/2 




Ciphering key sequence 
number 


Ciphering key sequence 

number 

10.5.1.2 


M 


V 


1/2 




Location area 
identification 


Location area 
identification 

10.5.1.3 


M 


V 


5 




Mobile station 
classmark 


Mobile station 
classmark 1 
10.5.1.5 


M 


V 


1 




Mobile identity 


Mobile identity 
10.5.1.4 


M 


LV 


2-9 


33 


Mobile station 
classmark for UMTS 


Mobile station 
classmark 2 
10.5.1.6 


O 


TLV 


5 



9.2.15.1 Location area identification 

The location area identification stored in the SIM is used. 

9.2.1 5.2 Mobile Station Classmark 

This IE shall include for multiband MS the Classmark 1 corresponding to the frequency band in use. 

9.2.1 5.3 Mobile Station Classmark for UMTS 

This IE shall include when the mobile station is in UMTS network. 

9.2.15a MM information 

This message is sent by the network to the mobile station to provide the mobile station with subscriber specific 
information. See table 9.2.18/TS 24.008. 

Message type: MM INFORMATION 

Significance: dual 

Direction: network to mobile station 
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Table 9.2.1 8/TS 24.008 MM INFORMATION message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Mobility management 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Skip Indicator 


Skip Indicator 
10.3.1 


M 


V 


1/2 




MM Information 
message type 


Message type 
10.4 


M 


V 


1 


43 


Full name for network 


Network Name 
10.5.3.5a 


O 


TLV 


3-? 


45 


Short name for network 


Network Name 
10.5.3.5a 


O 


TLV 


3-? 


46 


Network time zone 


Time Zone 
10.5.3.8 


o 


TV 


2 


47 


Network time and time zone 


Time Zone and Time 
10.5.3.9 


o 


TV 


8 


48 


LSA Identity 


LSA Identifier 
10.5.3.11 


o 


TLV 


2-5 


49 


Network Daylight Saving Time 


Daylight Saving Time 
10.5.3.12 





TLV 


3 



9.2.1 5a.1 Full name for network 

This IE may be sent by the network. If this IE is sent, the contents of this IE indicate the "full length name of the 
network" that the network wishes the mobile station to associate with the MCC and MNC contained in the Location 
Area Identification of the cell to which the mobile station sent its Channel Request message. 

9.2.1 5a.2 Short name for network 

This IE may be sent by the network. If this IE is sent, the contents of this IE indicate the "abbreviated name of the 
network" that the network wishes the mobile station to associate with the MCC and MNC contained in the Location 
Area Identification of the cell to which the mobile station sent its Channel Request message. 

9.2.1 5a.3 Network time zone 

This IE may be sent by the network. The mobile station should assume that this time zone applies to the Location Area 
of the cell to which the Channel Request message was sent. 

If the network time zone has been adjusted for Daylight Saving Time, the network shall indicate this by including the IE 
Network Daylight Saving Time. 

9.2.1 5a.4 Network time zone and time 

This IE may be sent by the network. The mobile station should assume that this time zone applies to the Location Area 
of the cell to which the Channel Request message was sent. The mobile station shall not assume that the time 
information is accurate. 

If the network time zone has been adjusted for Daylight Saving Time, the network shall indicate this by including the IE 
Network Daylight Saving Time. 
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9.2.1 5a.5 LSA Identity 

This IE may be sent by the network. The contents of this IE indicate the LSA identity of the serving cell. 

9.2.1 5a.6 Network Daylight Saving Time 

This IE may be sent by the network. If this IE is sent, the contents of this IE indicates the value that has been used to 
adjust the network time zone. 

9.2.16 MM Status 

This message is sent by the mobile station or the network at any time to report certain error conditions listed in section 
8. See table 9.2.19/TS 24.008. 

Message type: MM STATUS 

Significance: local 

Direction: both 

Table 9.2.19/TS 24.008: MM STATUS message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Mobihty management 
protocol discriminator 


Protocol discriminator 

10.2 


M 


V 


1/2 




Skip Indicator 


Skip Indicator 
10.3.1 


M 


V 


1/2 




MM Status message 
type 


Message type 
10.4 


M 


V 


1 




Reject cause 


Reject cause 
10.5.3.6 


M 


V 


1 



9.2.17 TMSI reallocation command 

This message is sent by the network to the mobile station to reallocate or delete a TMSI. See table 9.2.20/TS 24.008. 
Message type: TMSI REALLOCATION COMMAND 
Significance: dual 
Direction: network to mobile station 
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Table 9.2.20/TS 24.008: TMSI REALLOCATION COMMAND message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Mobility management 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Skip Indicator 


Skip Indicator 
10.3.1 


M 


V 


1/2 




TMSI Reallocation 
Command message type 


Message type 
10.4 


M 


V 


1 




Location area 
identification 


Location area 
identification 
10.5.1.3 


M 


V 


5 




Mobile identity 


Mobile identity 
10.5.1.4 


M 


LV 


2-9 



9.2.18 TMSI reallocation complete 



This message is sent by the mobile station to the network to indicate that reallocation or deletion of a TMSI has taken 
place. See table 9.2.21/TS 24.008. 

Message type: TMSI REALLOCATION COMPLETE 

Significance: dual 

Direction: mobile station to network 

Table 9.2.21/TS 24.008: TMSI REALLOCATION COMPLETE message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Mobility management 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Skip Indicator 


Skip Indicator 
10.3.1 


M 


V 


1/2 




TMSI Reallocation 
Complete message type 


Message type 
10.4 


M 


V 


1 



9.2.19 MM Null 

This message is sent in mobile to network direction. 

This message is not used on the radio interface. When received by the network it shall be ignored. 

The introduction of this message solves interworking issues. 

Message type: MM NULL 
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Table 9.2.22/TS 24.008 MM NULL message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Mobility management 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Skip Indicator 


Skip Indicator 
10.3.1 


M 


V 


1/2 




MM Null message 
type 


Message type 
10.4 


M 


V 


1 



9.2.20 Notification response 



This message is sent by the mobile station to the network to respond on a notification for a voice group call or voice 
broadcast call. See table 9.2.23/TS 24.008. 

Message type: NOTIFICATION RESPONSE 

Significance: dual 

Direction: mobile station to network 

Table 9.2.23/TS 24.008 NOTIFICATION RESPONSE message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Mobihty management 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Skip Indicator 


Skip Indicator 
10.3.1 


M 


V 


1/2 




Notification response 
message type 


Message type 
10.4 


M 


V 


1 




Mobile station 
classmark 


Mobile station 
classmark 2 
10.5.1.6 


M 


LV 


4 




Mobile identity 


Mobile identity 
10.5.1.4 


M 


LV 


2-9 




Group or broadcast 
call reference 


Call reference 
10.5.1.9 


M 


V 


5 



9.3 Messages for circuit-switched call control 

Table 9.54/TS 24.008 summarizes the messages for circuit-switched call control. 
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Table 9.54/TS 24.008: Messages for circuit-mode connections call control. 



Call establishment messages: 


Reference 


ALERTING 


9.3.1 


CALL CONFIRMED 1) 


9.3.2 


CALL PROCEEDING 


9.3.3 


CONNECT 


9.3.5 


CONNECT ACKNOWLEDGE 


9.3.6 


EMERGENCY SETUP 1) 


9.3.8 


PROGRESS 


9.3.17 


SETUP 


9.3.23 


Call information phase messages: 


Reference 


MODIFY 1) 


9.3.13 


MODIFY COMPLETE 1) 


9.3.14 


MODIFY REJECT 1) 


9.3.15 


USER INFORMATION 


9.3.31 


Call clearing messages: 


Reference 


DISCONNECT 


9.3.7 


RELEASE 


9.3.18 


RELEASE COMPLETE 


9.3.19 


Messages for supplementary service control 


Reference 


FACILITY 


9.3.9 


HOLD 1) 


9.3.10 


HOLD ACKNOWLEDGE 1) 


9.3.11 


HOLD REJECT 1) 


9.3.12 


RETRIEVE 1) 


9.3.20 


RETRIEVE ACKNOWLEDGE 1) 


9.3.21 


RETRIEVE REJECT 1) 


9.3.22 


Miscellaneous messages 


Reference 


CONGESTION CONTROL 


9.3.4 


NOTIFY 


9.3.16 


START DTMF1) 


9.3.24 


START DTMF ACKNOWLEDGE 1) 


9.3.25 


START DTMF REJECT 1) 


9.3.26 


STATUS 


9.3.27 


STATUS ENQUIRY 


9.3.28 


STOP DTMF 1) 


9.3.29 


STOP DTMF ACKNOWLEDGE 1) 


9.3.30 



NOTE: Not supported by Blue Book CCITT Rec. Q.93 1 . 

9.3.1 Alerting 

9.3.1 .1 Alerting (network to mobile station direction) 

This message is sent by the network to the calling mobile station to indicate that the called user alerting has been 
initiated. 

See table 9.55/TS 24.008. 

Message type: ALERTING 

Significance: global 

Direction: network to mobile station 
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Table 9.55/TS 24.008: ALERTING message content (network to mobile station direction) 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Alerting 
message type 


Message type 
10.4 


M 


V 


1 


IC 


Facility 


Facility 
10.5.4.15 


O 


TLV 


2-? 


IE 


Progress indicator 


Progress indicator 
10.5.4.21 





TLV 


4 


7E 


User-user 


User-user 
10.5.4.25 


o 


TLV 


3-131 



9.3.1.1.1 Facility 

This information element may be used for functional operation of supplementary services. 

9.3.1 .1 .2 Progress indicator 

This information element may be included by the network: 

in order to pass information about the call in progress, e.g., in the event of interworking; and/or 
to make the mobile station attach the user connection for speech. 

9.3.1.1.3 User-user 

This information element may be included by the network if the called remote user included a user-user information 
element in the ALERTING message. 



9.3.1.2 



Alerting (mobile station to network direction) 



This message is sent by the called mobile station to the network, to indicate that the called user alerting has been 
initiated. 

See table 9.55a/TS 24.008. 

Message type: ALERTING 

Significance: global 

Direction: mobile station to network 
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Table 9.55a/TS 24.008: ALERTING message content (mobile station to network direction) 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Alerting 
message type 


Message type 
10.4 


M 


V 


1 


IC 


Facility 


Facility 
10.5.4.15 


O 


TLV 


2-? 


7E 


User-user 


User-user 
10.5.4.25 





TLV 


3-131 


7F 


SS version 


SS version indicator 

10.5.4.24 


o 


TLV 


2-3 



9.3.1.2.1 Facility 

This information element may be used for functional operation of supplementary services. 

9.3.1.2.2 User-user 

This information element may be included when the called mobile station wants to return information to the calling 
remote user. 

9.3.1.2.3 SS version 

This information element shall not be included if the/flci7/(y information element is not present in this message. 

This information element shall be included or excluded as defined in TS 24.010. This information element should not 
be transmitted unless explicitly required by TS 24.010. 

9.3.2 Call confirmed 

This message is sent by the called mobile station to confirm an incoming call request. 
See table 9.56/TS 24.008. 

Message type: CALL CONFIRMED 

Significance: local 

Direction: mobile station to network 
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Table 9.56/TS 24.008: CALL CONFIRMED message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Call confirmed 
message type 


Message type 
10.4 


M 


V 


1 


D- 


Repeat Indicator 


Repeat Indicator 

10.5.4.22 


C 


TV 


1 


04 


Bearer capability 1 


Bearer capability 
10.5.4.5 





TLV 


3-16 


04 


Bearer capability 2 


Bearer capability 
10.5.4.5 





TLV 


3-16 


08 


Cause 


Cause 
10.5.4.11 


o 


TLV 


4-32 


15 


CC Capabilities 


Call Control Capabilities 
10.5.4.5a 


o 


TLV 


3 



9.3.2.1 



Repeat indicator 



The repeat indicator information element shall be included if bearer capability 1 information element and bearer 
capability 2 IE are both included in the message. 

9.3.2.2 Bearer capability 1 and bearer capability 2 

The bearer capability 1 information element shall be included if and only if at least one of the following five cases 
holds: 

the mobile station wishes another bearer capability than that given by the bearer capability 1 information 
element of the incoming SETUP message; 

the bearer capability 1 information element is missing or not fully specified in the SETUP message; 

the bearer capability 1 information element received in the SETUP message is accepted and the "radio channel 
requirement" of the mobile station is other than "full rate support only mobile station"; 

the bearer capability 1 information element received in the SETUP message indicates speech and is accepted 
and the mobile station supports other speech versions than GSM version 1; 

the bearer capability 1 information element received in the SETUP message included the "fixed network user 
rate" parameter. 

When the bearer capability 1 information element is followed by the bearer capability 2 IE in the SETUP, the above 
rules apply to both bearer capability 1 IE and bearer capability 2 IE. Except those cases identified in TS 27.001, if 
either bearer capability needs to be included, both shall be included. 

Furthermore, both bearer capability information elements may be present if the mobile station wishes to reverse the 
order of occurrence of the bearer capability information elements (which is referred to in the repeat indicator 
information element, see section 10.5.4.22) in cases identified in TS 27.001. 
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9.3.2.3 Cause 

This information element is included if the mobile station is compatible but the user is busy. 

9.3.2.4 CC Capabilities 

This information element may be included by the mobile station to indicate its call control capabilities. 

9.3.3 Call proceeding 

This message is sent by the network to the calling mobile station to indicate that the requested call establishment 
information has been received, and no more call establishment information will be accepted. 

See table 9.57/TS 24.008. 

Message type: CALL PROCEEDING 

Significance: local 

Direction: network to mobile station 

Table 9.57/TS 24.008: CALL PROCEEDING message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Lengtli 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Call proceeding 
message type 


Message type 
10.4 


M 


V 


1 


D- 


Repeat Indicator 


Repeat Indicator 

10.5.4.22 


C 


TV 


1 


04 


Bearer capability 1 


Bearer capabiHty 
10.5.4.5 


O 


TLV 


3-16 


04 


Bearer capability 2 


Bearer capability 
10.5.4.5 


o 


TLV 


3-16 


IC 


Facihty 


Facility 
10.5.4.15 





TLV 


2-? 


IE 


Progress indicator 


Progress indicator 
10.5.4.21 


o 


TLV 


4 


8- 


Priority granted 


Priority Level 
10.5.1.11 


o 


TV 


1 



9.3.3.1 



Repeat indicator 



This information element is included if and only if bearer capability 1 IE and bearer capability 2 IE are both contained 
in the message. 



£75/ 



(3G TS 24.008 version 3.2.1 Release 1 999) 1 99 ETSI TS 1 24 008 V3.2.1 (2000-01 ) 

9.3.3.2 Bearer capability 1 and bearer capability 2 

The bearer capability 1 information element is included if the network has to specify at least one of the negotiable 
parameters described in TS 27.001, or if the bearer capability 1 information element received in the SETUP message 
included the "fixed network user rate" parameter. 

When the bearer capability 1 information element is followed by the bearer capability 2 IE in the SETUP, the above 
rule applies to both bearer capability 1 IE and bearer capability 2 IE. Except those cases identified in TS 27.001, if 
either bearer capability needs to be included, both shall be included. 

9.3.3.3 Facility 

This information element may be used for functional operation of supplementary services. 

9.3.3.4 Progress Indicator 

This information element may be included: 

in order to pass information about the call in progress e.g. in the event of interworking; and/or 
- to make the MS attach the user connection for speech. 

9.3.3.5 Priority granted 

The priority field is provided by the network in the case that eMLPP is used and the priority assigned by the network is 
not the same as that requested by the mobile station. 

9.3.4 Congestion control 

This message is sent by the network to indicate the establishment or termination of flow control on the transmission of 
USER INFORMATION messages. 

See table 9.58/TS 24.008. 

Message type: CONGESTION CONTROL 

Significance: local (note) 

Direction: network to mobile station 
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Table 9.58/TS 24.008: CONGESTION CONTROL message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Congestion control 
message type 


Message type 
10.4 


M 


V 


1 




Congestion level 


Congestion level 

10.5.4.12 


M 


V 


1/2 




Spare half octet 


Spare half octet 
10.5.1.8 


M 


V 


1/2 


08 


Cause 


Cause 
10.5.4.11 


O 


TLV 


4-32 



NOTE; This message has local significance, but may carry information of global significance. 

9.3.4.1 Cause 

This information element is included if the user to user information has been discarded as a result of the congestion 
situation. 

9.3.5 Connect 

9.3.5.1 Connect (network to mobile station direction) 

This message is sent by the network to the calling mobile station to indicate call acceptance by the called user. 
See table 9.59/TS 24.008. 

Message type: CONNECT 

Significance: global 

Direction: network to mobile station 
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Table 9.59/TS 24.008: CONNECT message content(network to mobile station direction) 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Connect 
message type 


Message type 
10.4 


M 


V 


1 


IC 


Facility 


Facility 
10.5.4.15 


O 


TLV 


2-? 


IE 


Progress indicator 


Progress indicator 
10.5.4.21 





TLV 


4 


4C 


Connected number 


Connected number 
10.5.4.13 


o 


TLV 


3-14 


4D 


Connected subaddress 


Connected subaddress 
10.5.4.14 


o 


TLV 


2-23 


7E 


User-user 


User-user 
10.5.4.25 


o 


TLV 


3-131 



9.3.5.1.1 Facility 

This information element may be used for functional operation of supplementary services. 

9.3.5.1.2 Progress indicator 

This information element may be included by the network: 

in order to pass information about the call in progress e.g. in the event of interworking; and/or 
to make the MS attach the user connection for speech. 

9.3.5.1.3 User-user 

This information element may be included by the network if the remote user awarded the call included a user- user 
information element in the CONNECT message. 

9.3.5.2 Connect (mobile station to network direction) 

This message is sent by the called mobile station to the network to indicate call acceptance by the called user. 
See table 9.59a/TS 24.008. 

Message type: CONNECT 

Significance: global 

Direction: mobile station to network 
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Table 9.59a/TS 24.008: CONNECT message content (mobile station to network direction) 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Connect 
message type 


Message type 
10.4 


M 


V 


1 


IC 


Facility 


Facility 
10.5.4.15 


O 


TLV 


2-? 


4D 


Connected subaddress 


Connected subaddress 
10.5.4.14 





TLV 


2-23 


7E 


User-user 


User-user 
10.5.4.25 


o 


TLV 


3-131 


7F 


SS version 


SS version indicator 

10.5.4.24 


o 


TLV 


2-3 



9.3.5.2.1 Facility 

This information element may be used for functional operation of supplementary services. 

9.3.5.2.2 User-user 

This information element is included when the answering mobile station wants to return user information to the calling 
remote user. 

9.3.5.2.3 SS version 

This information element shall not be included if the/ac;7/f>' information element is not present in this message. 

This information element shall be included or excluded as defined in TS 24.010. This information element should not 
be transmitted unless explicitly required by TS 24.010. 

9.3.6 Connect acknowledge 

This message is sent by the network to the called mobile station to indicate that the mobile station has been awarded the 
call. It shall also be sent by the calling mobile station to the network to acknowledge the offered connection. 

See table 9.60/TS 24.008. 

Message type: CONNECT ACKNOWLEDGE 

Significance: local 

Direction: both 
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Table 9.60/TS 24.008: CONNECT ACKNOWLEDGE message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Connect acknowledge 
message type 


Message type 
10.4 


M 


V 


1 



9.3.7 Disconnect 

9.3.7.1 Disconnect (network to mobile station direction) 

This message is sent by the network to indicate that the end-to-end connection is cleared. 
See table 9.61/TS 24.008. 

Message type: DISCONNECT 

Significance: global 

Direction: network to mobile station 

Table 9.61/TS 24.008: DISCONNECT message content (network to mobile station direction) 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 

10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Disconnect 
message type 


Message type 
10.4 


M 


V 


1 




Cause 


Cause 
10.5.4.11 


M 


LV 


3-31 


IC 


Facility 


Facility 
10.5.4.15 


O 


TLV 


2-? 


IE 


Progress indicator 


Progress indicator 
10.5.4.21 


O 


TLV 


4 


7E 


User-user 


User-user 
10.5.4.25 





TLV 


3-131 


7B 


Allowed actions $(CCBS)$ 


Allowed actions 
10.5.4.26 


o 


TLV 


3 



9.3.7.1.1 Facility 

This information element may be used for functional operation of supplementary services, such as the user -user service. 
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9.3.7.1.2 



Progress indicator 



This information element is included by the network to make the MS attach the user connection for speech and react in 
a specific way during call clearing (see section 5.4.4). 



9.3.7.1.3 



User-user 



This information element may be included by the network when the remote user initiates call clearing and included a 
user-user information element in the DISCONNECT message. 

9.3.7.1.4 Allowed actions $(CCBS)$ 

This information element may be included by the network to inform the MS about further possible reactions. 

9.3.7.2 Disconnect (mobile station to network direction) 

This message is sent by the mobile station to request the network to clear an end-to-end connection. 
See table 9.61a/TS 24.008. 

Message type: DISCONNECT 

Significance: global 

Direction: mobile station to network 

Table 9.61 a/TS 24.008: DISCONNECT message content (mobile station to network direction) 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Disconnect 
message type 


Message type 
10.4 


M 


V 


1 




Cause 


Cause 
10.5.4.11 


M 


LV 


3-31 


IC 


Facility 


Facility 
10.5.4.15 


O 


TLV 


2-1 


7E 


User-user 


User-user 
10.5.4.25 





TLV 


3-131 


7F 


SS version 


SS version indicator 

10.5.4.24 





TLV 


2-3 



9.3.7.2.1 Facility 

This information element may be used for functional operation of supplementary services, such as the user-user service. 

9.3.7.2.2 User-user 

This information element is included when the mobile station initiates call clearing and wants to pass user information 
to the remote user at call clearing time. 
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9.3.7.2.3 SS version 

This information element shall not be included if the/ac/Z/fy information element is not present in this message. 

This information element shall be included or excluded as defined in TS 24.010. This information element should not 
be transmitted unless explicitly required by TS 24.010. 



9.3.8 Emergency setup 



This message is sent from the mobile station to initiate emergency call establishment. 
See table 9.62/TS 24.008. 

Message type: EMERGENCY SETUP 

Significance: global 

Direction: mobile station to network 

Table 9.62/TS 24.008: EMERGENCY SETUP message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Emergency setup 
message type 


Message type 
10.4 


M 


V 


1 


04 


Bearer capability 


Bearer capabiUty 
10.5.4.5 


O 


TLV 


3-9 



9.3.8.1 



Bearer capability 



If the element is not included, the network shall by default assume speech and select full rate speech version 1 . If this 
information element is included, it shall indicate speech, the appropriate speech version(s) and have the appropriate 
value of radio channel requirement field. 



9.3.9 Facility 



9.3.9.1 



Facility (network to mobile station direction) 



This message is sent by the network to the mobile station to request or acknowledge a supplementary service. The 
supplementary service to be invoked and its associated parameters are specified in the facility information element. 

See table 9.62a/TS 24.008. 

Message type: FACILITY 

Significance: local (NOTE 1) 

Direction: network to mobile station 
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Table 9.62a/TS 24.008: FACILITY message content (network to mobile station direction) 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Facility 
message type 


Message type 
10.4 


M 


V 


1 




Facility (note 2) 


Facility 
10.5.4.15 


M 


LV 


1-? 



NOTE 1: This message has local significance; however, it may carry information of global significance. 

NOTE 2: The facility information element has no upper length limit except that given by the maximum number of 
octets in a L3 message, see GSM 04.06. 

9.3.9.2 Facility (mobile station to network direction) 

This message is sent by the mobile station to the network to request or acknowledge a supplementary service. The 
supplementary service to be invoked and its associated parameters are specified in the facility information element. 

See table 9.62b/TS 24.008. 

Message type: FACILITY 

Significance: local (note 1) 

Direction: mobile station to network 

Table 9.62b/TS 24.008: FACILITY message content (mobile station to network direction) 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Facility 
message type 


Message type 
10.4 


M 


V 


1 




Facility (note 2) 


Facility 
10.5.4.15 


M 


LV 


1-? 


7F 


SS version 


SS version indicator 
10.5.4.24 


O 


TLV 


2-3 



NOTE 1: This message has local significance; however, it may carry information of global significance. 

NOTE 2: The facility information element has no upper length limit except that given by the maximum number of 
octets in a L3 message, see GSM 04.06. 
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9.3.9.2.1 



SS version 



This information element shall be included or excluded as defined in TS 24.010. This information element should not 
be transmitted unless explicitly required by TS 24.010. 

9.3.10 Hold 

This message is sent by the mobile user to request the hold function for an existing call. 
See table 9.62c/TS 24.008 for the content of the HOLD message. 
For the use of this message, see TS 24.010. 

Message type: HOLD 

Significance: local 

Direction: mobile station to network 

Table 9.62c/TS 24.008: HOLD message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Hold 


Message type 


M 


V 


1 




message type 


10.4 









9.3.1 1 Hold Acknowledge 

This message is sent by the network to indicate that the hold function has been successfully performed. 
See table 9.62d/TS 24.008 for the content of the HOLD ACKNOWLEDGE message. 
For the use of this message, see TS 24.010. 

Message type: HOLD ACKNOWLEDGE 

Significance: local 

Direction: network to mobile station 

Table 9.62d/TS 24.008: HOLD ACKNOWLEDGE message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Hold Acknowledge 
message type 


Message type 
10.4 


M 


V 


1 



9.3.12 Hold Reject 

This message is sent by the network to indicate the denial of a request to hold a call. 
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See table 9.62e/TS 24.008 for the content of the HOLD REJECT message. 
For the use of this message, see TS 24.010. 

Message type: HOLD REJECT 

Significance: local 

Direction: network to mobile station 

Table 9.62e/TS 24.008: HOLD REJECT message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 

10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Hold Reject 
message type 


Message type 
10.4 


M 


V 


1 




Cause 


10.5.4.11 


M 


LV 


3-31 



9.3.13 Modify 



This message is sent by the mobile station to the network or by the network to the mobile station to request a change in 
bearer capability for a call. 

See table 9.63/TS 24.008. 

Message type: MODIFY 

Significance: global 

Direction: both 
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Table 9.63/TS 24.008: MODIFY message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Modify 
message type 


Message type 
10.4 


M 


V 


1 




Bearer capability 


Bearer capability 
10.5.4.5 


M 


LV 


2-15 


7C 


Low layer comp. 


Low layer comp. 
10.5.4.18 


O 


TLV 


2-18 


7D 


High layer comp. 


High layer comp. 
10.5.4.16 


O 


TLV 


2-5 


A3 


Reverse call setup 
direction 


Reverse call setup 
direction 

10.5.4.22a 


o 


T 


1 



9.3.1 3.1 Low layer compatibility 

This information element shall be included if it was included in the initial SETUP message. 

9.3.1 3.2 High layer compatibility 

This information element shall be included if it was included in the initial SETUP message. 

9.3.1 3.3 Reverse call setup direction 

This information element is included or omitted in the mobile to network direction according to the rules defined in 
section 5.3.4.3.1. 

9.3.14 Modify complete 

This message is sent by the mobile station to the network or by the network to the mobile station to indicate completion 
of a request to change bearer capability for a call. 

See table 9.64/TS 24.008. 

Message type: MODIFY COMPLETE 

Significance: global 

Direction: both 
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Table 9.64/TS 24.008: MODIFY COMPLETE message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Modify complete 
message type 


Message type 
10.4 


M 


V 


1 




Bearer capability 


Bearer capability 
10.5.4.5 


M 


LV 


2-15 


7C 


Low layer comp. 


Low layer comp. 
10.5.4.18 





TLV 


2-18 


7D 


High layer comp. 


High layer comp. 
10.5.4.16 


O 


TLV 


2-5 


A3 


Reverse call setup 
direction 


Reverse call setup 
direction 

10.5.4.22a 


O 


T 


1 



9.3.1 4.1 Low layer compatibility 

This information element shall be included if it was included in the initial SETUP message. 

9.3.14.2 High layer compatibility 

This information element shall be included if it was included in the initial SETUP message. 

9.3.1 4.3 Reverse call setup direction 

This information element is included or omitted according to the rules defined in section 5.3.4.3.2. 



9.3.15 Modify reject 



This message is sent by the mobile station to the network or by the network to the mobile station to indicate failure of a 
request to change the bearer capability for a call. 

See table 9.65/TS 24.008. 

Message type: MODIFY REJECT 

Significance: global 

Direction: both 
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Table 9.65/TS 24.008: MODIFY REJECT message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Modify reject 
message type 


Message type 
10.4 


M 


V 


1 




Bearer capability 


Bearer capability 
10.5.4.5 


M 


LV 


2-15 




Cause 


Cause 
10.5.4.11 


M 


LV 


3-31 


7C 


Low layer comp. 


Low layer comp. 
10.5.4.18 


O 


TLV 


2-18 


7D 


High layer comp. 


High layer comp. 
10.5.4.16 


O 


TLV 


2-5 



9.3.1 5.1 Low layer compatibility 

This information element shall be included if it was included in the initial SETUP message. 

9.3.15.2 High layer compatibility 

This information element shall be included if it was included in the initial SETUP message. 

9.3.16 Notify 

This message is sent either from the mobile station or from the network to indicate information pertaining to a call, such 
as user suspended. 

See table 9.66/TS 24.008. 

Message type: NOTIFY 

Significance: access 

Direction: both 
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Table 9.66/TS 24.008: NOTIFY message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Notify 
message type 


Message type 
10.4 


M 


V 


1 




Notification indicator 


Notification indicator 
10.5.4.20 


M 


V 


1 



9.3.17 Progress 



This message is sent from the network to the mobile station to indicate the progress of a call in the event of 
interworking or in connection with the provision of in-band information/patterns. 

See table 9.67/TS 24.008. 

Message type: PROGRESS 

Significance: global 

Direction: network to mobile station 



Table 9.67/TS 24.008: PROGRESS message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Progress 
message type 


Message type 
10.4 


M 


V 


1 




Progress indicator 


Progress indicator 
10.5.4.21 


M 


LV 


3 


7E 


User-user 


User-user 
10.5.4.25 


O 


TLV 


3-131 



9.3.17.1 



User-user 



This information element is included when the PROGRESS message is sent by the network when the call has been 
cleared by the remote user before it reached the active state to indicate that the remote user wants to pass user 
information at call clearing time. 



9.3.17a CC-Establishment $(CCBS)$ 



A mobile station that does not support the "Network initiated MO call" option shall treat this message as a message 
with message type not defined for the PD. 
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This message is sent from the network to the mobile station to provide information on the call that the mobile station 
should attempt to establish. 

See Table 9.67a/TS 24.008. 

Message type: CC-ESTABLISHMENT 
Significance: local 

Direction: network to mobile station 



Table 9.67a/TS 24.008: CC-Establishment message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




CC-EstabHshment 
message type 


Message type 
10.4 


M 


V 


1 




Setup container 


Container 

10.5.4.22a 


M 


LV 


3-n 



* From the 4th IE onwards the message is coded in the same way as the SETUP message in MS to network direction 
from the 4th IE onwards. 

9.3.1 7a.2 Setup container 

This information element contains the contents of a SETUP message (Mobile Station to Network). 

9.3.17b CC-Establishment confirmed $(CCBS)$ 

A Network that does not support the "Network initiated MO call" option shall treat this message as a message with 
message type not defined for the PD. 

This message is sent by the mobile station to the network to indicate the requested channel characteristics for the call 
which may be initiated by the mobile station . 

See Table 9.67b/TS 24.008. 

Message type: CC-ESTABLISHMENT CONFIRMED 

Significance: local 

Direction: mobile station to network 
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Table 9.67b/TS 24.008: CC-ESTABLISHMENT CONFIRMED message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




CC-Establishment 
confirmed 
message type 


Message type 
10.4 


M 


V 


1 


D- 


Repeat Indicator 


Repeat Indicator 

10.5.4.22 


C 


TV 


1 


04 


Bearer capability 1 


Bearer capability 
10.5.4.5 


M 


TLV 


3-10 


04 


Bearer capability 2 


Bearer capability 
10.5.4.5 


O 


TLV 


3-10 


08 


Cause 


Cause 
10.5.4.11 


O 


TLV 


4-32 



9.3.1 7b. 1 Repeat indicator 

The repeat indicator information element shall be included if bearer capability 1 information element and bearer 
capability 2 IE are both included in the message. 

9.3.1 7b.2 Bearer capability 1 and bearer capability 2 

If, in any subsequent SETUP message to be sent on this transaction the bearer capability 1 information element is to be 
followed by the bearer capability 2 IE, then the bearer capability 2 IE shall be included in this message. 

9.3.1 7b.9 Cause 

This information element is included if the mobile station is compatible but the user is busy. 

9.3.18 Release 

9.3.1 8.1 Release (network to mobile station direction) 

This message is sent, from the network to the mobile station to indicate that the network intends to release the 
transaction identifier, and that the receiving equipment shall release the transaction identifier after sending RELEASE 
COMPLETE. 

See table 9.68/TS 24.008. 

Message type: RELEASE 

Significance: local (note) 

Direction: network to mobile station 
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Table 9.68/TS 24.008: RELEASE message content (network to mobile station direction) 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Release 
message type 


Message type 
10.4 


M 


V 


1 


08 


Cause 


Cause 
10.5.4.11 


O 


TLV 


4-32 


08 


Second cause 


Cause 
10.5.4.11 





TLV 


4-32 


IC 


Facility 


Facility 
10.5.4.15 


o 


TLV 


2-? 


7E 


User-user 


User-user 
10.5.4.25 


o 


TLV 


3-131 



NOTE: This message has local significance; however, it may carry information of global significance when used 
as the first call clearing message. 

9.3.18.1.1 Cause 

This information element shall be included if this message is used to initiate call clearing. 



9.3.18.1.2 



Second cause 



This information element may be included under the conditions described in section 5.4.4.1.2.3 "Abnormal cases" 
(Clearing initiated by the network). 

9.3.18.1.3 Facility 

This information element may be included for functional operation of supplementary services. 



9.3.18.1.4 



User-user 



This information element may be included in the network to mobile station direction, when the RELEASE message is 
used to initiate call clearing, in order to transport user-user information from the remote user. 

9.3.1 8.2 Release (mobile station to network direction) 

This message is sent from the mobile station to the network to indicate that the mobile station intends to release the 
transaction identifier, and that the receiving equipment shall release the transaction identifier after sending RELEASE 
COMPLETE. 

See table 9.68a/TS 24.008. 

Message type: RELEASE 

Significance: local (note) 

Direction: mobile station to network direction 
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Table 9.68a/TS 24.008: RELEASE message content (mobile station to network direction) 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Release 
message type 


Message type 
10.4 


M 


V 


1 


08 


Cause 


Cause 
10.5.4.11 


O 


TLV 


4-32 


08 


Second cause 


Cause 
10.5.4.11 





TLV 


4-32 


IC 


Facility 


Facility 
10.5.4.15 


o 


TLV 


2-? 


7E 


User-user 


User-user 
10.5.4.25 


o 


TLV 


3-131 


7F 


SS version 


SS version indicator 
10.5.4.24 


o 


TLV 


2-3 



NOTE: This message has local significance; however, it may carry information of global significance when used 
as the first call clearing message. 

9.3.18.2.1 Cause 

This information element shall be included if this message is used to initiate call clearing. 



9.3.18.2.2 



Second cause 



This information element may be included under the conditions described in section 5.4.3.5 "Abnormal cases" (Clearing 
initiated by the mobile station). 

9.3.18.2.3 Facility 

This information element may be included for functional operation of supplementary services. 

9.3.18.2.4 User-user 

This information element is included when the RELEASE message is used to initiate call clearing and the mobile 
station wants to pass user information to the remote user at call clearing time. 

9.3.18.2.5 SS version 

This information element shall not be included if the/flc;7/f>' information element is not present in this message. 

This information element shall be included or excluded as defined in TS 24.010. This information element should not 
be transmitted unless explicitly required by TS 24.010. 
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9.3.18a Recall $(CCBS)$ 



A mobile station that does not support the "Network initiated MO call" option shall treat this message as a message 
with message type not defined for the PD. 

This message is sent fi^om the network to the mobile station to initiate the sending of the SETUP message. In addition it 
provides information for user notification. 

See Table 9.68b/TS 24.008. 

Message type: RECALL 
Significance: local 

Direction: network to mobile station 

Table 9.68b/TS 24.008: Recall message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Recall 
message type 


Message type 
10.4 


M 


V 


1 




Recall Type 


Recall Type 
10.5.4.21a 


M 


V 


1 




FaciUty 


Facility 
10.5.4.15 


M 


LV 


2-n 



9.3.1 8a.1 Recall Type 

The purpose of the recall type information element is to describe the reason for the recall. 

9.3.1 8a.2 Facility 

The information element shall be included for functional operation of supplementary services. 

9.3.19 Release complete 

9.3.1 9.1 Release complete (network to mobile station direction) 

This message is sent from the network to the mobile station to indicate that the network has released the transaction 
identifier and that the mobile station shall release the transaction identifier. 

See table 9.69/TS 24.008. 

Message type: RELEASE COMPLETE 

Significance: local (note) 

Direction: network to mobile station direction 
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Table 9.69/TS 24.008: RELEASE COMPLETE message content (network to mobile station direction) 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Release complete 
message type 


Message type 
10.4 


M 


V 


1 


08 


Cause 


Cause 
10.5.4.11 


O 


TLV 


4-32 


IC 


Facility 


Facility 
10.5.4.15 





TLV 


2-? 


7E 


User-user 


User-user 
10.5.4.25 


o 


TLV 


3-131 



NOTE: This message has local significance; however, it may carry information of global significance when used 
as the first call clearing message. 

9.3.19.1.1 Cause 

This information element shall be included if the message is used to initiate call clearing. 

9.3.19.1.2 Facility 

This information element may be included for functional operation of supplementary services. 

9.3.19.1.3 User-user 

This information element is included in the network to mobile station direction, when the RELEASE COMPLETE 
message is used to initiate call clearing, in order to transport user-user information from the remote user. 

9.3.1 9.2 Release complete (mobile station to network direction) 

This message is sent from the mobile station to the network to indicate that the mobile station has released the 
transaction identifier and that the network shall release the transaction identifier. 

See table 9.69a/TS 24.008. 

Message type: RELEASE COMPLETE 

Significance: local (note) 

Direction: mobile station to network direction 
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Table 9.69a/TS 24.008: RELEASE COMPLETE message content (mobile station to network direction) 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Release complete 
message type 


Message type 
10.4 


M 


V 


1 


08 


Cause 


Cause 
10.5.4.11 


O 


TLV 


4-32 


IC 


Facility 


Facility 
10.5.4.15 





TLV 


2-? 


7E 


User-user 


User-user 
10.5.4.25 


o 


TLV 


3-131 


7F 


SS version 


SS version indicator 

10.5.4.24 


o 


TLV 


2-3 



NOTE: This message has local significance; however, it may carry information of global significance when used 
as the first call clearing message. 

9.3.19.2.1 Cause 

This information element shall be included if the message is used to initiate call clearing. 

9.3.19.2.2 Facility 

This information element may be included for functional operation of supplementary services. 

9.3.19.2.3 User-user 

This information element is included in the mobile station to network direction when the RELEASE COMPLETE 
message is used to initiate call clearing and the mobile station wants to pass user information to the remote user at call 
clearing time. 

9.3.19.2.4 SS version. 

This information element shall not be included if the/flc;7/f>' information element is not present in this message. 

This information element shall be included or excluded as defined in TS 24.010. This information element should not 
be transmitted unless explicitly required by TS 24.010. 



9.3.20 Retrieve 

This message is sent by the mobile user to request the retrieval of a held call. 
See table 9.69b/TS 24.008 for the content of the RETRIEVE message. 
For the use of this message, see TS 24.010. 

Message type: RETRIEVE 

Significance: local 
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Direction: mobile station to network 

Table 9.69b/TS 24.008: RETRIEVE message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Retrieve 
message type 


Message type 
10.4 


M 


V 


1 



9.3.21 Retrieve Acknowledge 



This message is sent by the network to indicate that the retrieve function has been successfully performed. 
See table 9.69c/TS 24.008 for the content of the RETRIEVE ACKNOWLEDGE message. 
For the use of this message, see TS 24.010. 

Message type: RETRIEVE ACKNOWLEDGE 

Significance: local 

Direction: network to mobile station 

Table 9.69c/TS 24.008: RETRIEVE ACKNOWLEDGE message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Retrieve Acknowledge 
message type 


Message type 
10.4 


M 


V 


1 



9.3.22 Retrieve Reject 



This message is sent by the network to indicate the inability to perform the requested retrieve function. 
See table 9.69d/TS 24.008 for the content of the RETRIEVE REJECT message. 
For the use of this message, see TS 24.010. 

Message type: RETRIEVE REJECT 

Significance: local 

Direction: network to mobile station 
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Table 9.69d/TS 24.008: RETRIEVE REJECT message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Retrieve Reject 
message type 


Message type 
10.4 


M 


V 


1 




Cause 


10.5.4.11 


M 


LV 


3-31 



9.3.23 Setup 

9.3.23.1 Setup (mobile terminated call establishment) 

This message is sent by the network to the mobile station to initiate a mobile terminated call establishment. 
See table 9.70/TS 24.008. 

Message type: SETUP 

Significance: global 

Direction: network to mobile station 

Table 9.70/TS 24.008: SETUP message content (network to mobile station direction) 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 


Protocol discriminator 


M 


V 


1/2 




protocol discriminator 


10.2 










Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Setup 


Message type 


M 


V 


1 




message type 


10.4 








D- 


BC repeat indicator 


Repeat indicator 

10.5.4.22 


C 


TV 


1 


04 


Bearer capability 1 


Bearer capability 
10.5.4.5 


O 


TLV 


3-16 


04 


Bearer capability 2 


Bearer capabihty 
10.5.4.5 


o 


TLV 


3-16 


IC 


Facility 


Facility 
10.5.4.15 


o 


TLV 


2-? 


IE 


Progress indicator 


Progress indicator 
10.5.4.21 


o 


TLV 


4 


34 


Signal 


Signal 


o 


TV 


2 
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10.5.4.23 








5C 


Calling party BCD 
number 


CalHng party BCD num. 
10.5.4.9 





TLV 


3-14 


5D 


Calling party sub- 
address 


Calling party subaddr. 
10.5.4.10 





TLV 


2-23 


5E 


Called party BCD 
number 


Called party BCD num. 
10.5.4.7 


o 


TLV 


3-19 


6D 


Called party sub- 
address 


Called party subaddr. 
10.5.4.8 


o 


TLV 


2-23 


74 


Redirecting party BCD number 


Redirecting party BCD num. 
10.5.4.21a 


o 


TLV 


3-19 


75 


Redirecting party sub-address 


Redirecting party subaddress. 
10.5.4.21b 


o 


TLV 


2-23 


D- 


LLC repeat indicator 


Repeat indicator 

10.5.4.22 


o 


TV 


1 


7C 


Low layer 
compatibility I 


Low layer comp. 
10.5.4.18 





TLV 


2-18 


7C 


Low layer 
compatibility II 


Low layer comp. 
10.5.4.18 


c 


TLV 


2-18 


D- 


HLC repeat indicator 


Repeat indicator 

10.5.4.22 





TV 


1 


7D 


High layer 
compatibility i 


High layer comp. 
10.5.4.16 


o 


TLV 


2-5 


7D 


High layer 
compatibility ii 


High layer comp. 
10.5.4.16 


c 


TLV 


2-5 


7E 


User-user 


User-user 
10.5.4.25 


o 


TLV 


3-35 


8- 


Priority 


Priority Level 
10.5.1.11 


o 


TV 


1 


19 


Alert 


Alerting Pattern 
10.5.4.26 


o 


TLV 


3 



9.3.23.1.1 



BC repeat indicator 



The BC repeat indicator information element is included if and only if bearer capability 1 information element and 
bearer capability 2 IE are both present in the message. 



9.3.23.1.2 



Bearer capability 1 and bearer capability 2 



The bearer capability 1 information element may be omitted in the case where the mobile subscriber is allocated only 
one directory number for all services (ref.: TS 29.007). The bearer capability 2 IE is missing at least if the bearer 
capability 1 IE is missing. 
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9.3.23.1.3 Facility 

This information element may be included for functional operation of supplementary services. 

9.3.23.1.4 Progress indicator 

This information element is included by the network 

in order to pass information about the call in progress e.g. in the event of interworking and/or 
to make the MS attach the user connection for speech. 

9.3.23.1 .4a Called party BCD number 

For all bands except for PCS 1900, the maximum length of this IE sent by the network shall be 13 octets 

9.3.23.1 .5 Called party subaddress 

Included in the Network-to-mobile station direction if the calling user includes a called party subaddress information 
element in the SETUP message. 

9.3.23.1 .6 LLC repeat indicator 

The LLC repeat indicator information element is included if and only if both following conditions hold: 

The BC repeat indicator IE is contained in the message. 

The low layer compatibility I IE is contained in the message. 
If included, the LLC repeat indicator shall specify the same repeat indication as the BC repeat indicator IE. 

9.3.23.1 .7 Low layer compatibility I 

Included in the network-to-mobile station direction if the calling user specified a low layer compatibility. 

9.3.23.1 .8 Low layer compatibility II 

Included if and only if the LLC repeat indicator information element is contained in the message. 

9.3.23.1 .9 HLC repeat indicator 

The HLC repeat indicator information element is included if and only both following conditions hold: 

The BC repeat indicator IE is contained in the message. 

The high layer compatibility i IE is contained in the message. 
If included, the HLC repeat indicator shall specify the same repeat indication as the BC repeat indicator IE. 

9.3.23.1.10 High layer compatibility i 

Included in the network-to-mobile station direction if the calling user specified a high layer compatibility. 

9.3.23.1 .1 1 High layer compatibility ii 

Included if and only if the HLC repeat indicator information element is contained in the message. 

9.3.23.1.12 User-user 

May be included in the network to called mobile station direction when the calling remote user included a user-user 
information element in the SETUP message. 
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9.3.23.1.13 Redirecting party BCD number 

May be included in the network to called mobile station direction when the call has been redirected. 



9.3.23.1.14 



Redirecting party subaddress 



May be included in the network to called mobile station direction when the calling remote user included a called party 
subaddress in the SETUP message and the call has been redirected 

9.3.23.1.15 Priority 

May be included by the network to indicate the priority of the incoming call if eMLPP is used. 

9.3.23.1.16 Alert $(Network Indication of Alerting in the MS )$ 

May be included by the network to give some indication about alerting (category or level). If supported in the MS, this 
optional indication is to be used by the MS as specified in GSM 02.07. 

9.3.23.2 Setup (mobile originating call establishment) 

This message is sent from the mobile station to the network to initiate a mobile originating call establishment. 
See table 9.70a/TS 24.008. 

Message type: SETUP 

Significance: global 

Direction: mobile station to network 

Table 9.70a/TS 24.008: SETUP message content (mobile station to network direction) 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 


Protocol discriminator 


M 


V 


1/2 




protocol discriminator 


10.2 










Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Setup 


Message type 


M 


V 


1 




message type 


10.4 








D- 


BC repeat indicator 


Repeat indicator 

10.5.4.22 


C 


TV 


1 


04 


Bearer capabiUty 1 


Bearer capabiUty 
10.5.4.5 


M 


TLV 


3-16 


04 


Bearer capabiUty 2 


Bearer capabiUty 
10.5.4.5 


O 


TLV 


3-16 


IC 


Facility(simple recall 
alignment) 


Facility 
10.5.4.15 





TLV 


2- 


5D 


CalUng party sub- 
address 


Calling party subaddr. 
10.5.4.10 


o 


TLV 


2-23 
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5E 


Called party BCD 
number 


Called party BCD num. 
10.5.4.7 


M 


TLV 


3-43 


6D 


Called party sub- 
address 


Called party subaddr. 
10.5.4.8 





TLV 


2-23 


D- 


LLC repeat indicator 


Repeat indicator 

10.5.4.22 


O 


TV 


1 


7C 


Low layer 
compatibility I 


Low layer comp. 
10.5.4.18 


O 


TLV 


2-18 


7C 


Low layer 
compatibility II 


Low layer comp. 
10.5.4.18 





TLV 


2-18 


D- 


HLC repeat indicator 


Repeat indicator 

10.5.4.22 


O 


TV 


1 


7D 


High layer 
compatibility i 


High layer comp. 
10.5.4.16 





TLV 


2-5 


7D 


High layer 
compatibility ii 


High layer comp. 
10.5.4.16 


O 


TLV 


2-5 


7E 


User-user 


User-user 
10.5.4.25 


O 


TLV 


3-35 


7F 


SS version 


SS version indicator 

10.5.4.24 





TLV 


2-3 


Al 


CLIR suppression 


CLIR suppression 
10.5.4.11a 


C 


T 


1 


A2 


CLIR invocation 


CLIR invocation 
10.5.4.11b 


C 


T 


1 


15 


CC capabiHties 


Call Control Capabilities 

10.5.4.5a 





TLV 


3 


ID 


FaciHty $(CCBS)$ 
(advanced recall aUgnment) 


Facility 
10.5.4.15 


o 


TLV 


2-? 


IB 


FaciUty (recall alignment 
Not essential) $(CCBS)$ 


Facility 
10.5.4.15 


o 


TLV 


2-? 



9.3.23.2.1 



BC repeat indicator 



The BC repeat indicator information element is included if and only if bearer capability 1 IE and bearer capability 2 IE 
are both present in the message. 

9.3.23.2.2 Facility 

The information element may be included for functional operation of supplementary services. 
Three different codings of this IE exist, for further details see 04.10. 
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9.3.23.2.3 LLC repeat indicator 

The LLC repeat indicator information element is included if and only if both following conditions hold: 

The BC repeat indicator IE is contained in the message. 

The low layer compatibility I IE is contained in the message. 
If included, the LLC repeat indicator shall specify the same repeat indication as the BC repeat indicator IE. 

9.3.23.2.4 Low layer compatibility I 

The information element is included in the MS-to-network direction when the calling MS wants to pass low layer 
compatibility information to the called user. 

9.3.23.2.5 Low layer compatibility II 

Included if and only if the LLC repeat indicator information element is contained in the message. 

9.3.23.2.6 HLC repeat indicator 

The HLC repeat indicator information element is included if and only if both following conditions hold: 

The BC repeat indicator IE is contained in the message. 

The high layer compatibility i IE is contained in the message. 
If included, the HLC repeat indicator shall specify the same repeat indication as the BC repeat indicator IE. 

9.3.23.2.7 High layer compatibility i 

The information element is included when the calling MS wants to pass high layer compatibility information to the 
called user. 

9.3.23.2.8 High layer compatibility ii 

Included if and only if the HLC repeat indicator information element is contained in the message. 

9.3.23.2.9 User-user 

The information element is included in the calling mobile station to network direction when the calling mobile station 
wants to pass user information to the called remote user. 

9.3.23.2.10 SS version 

This information element shall not be included if the facility information element is not present in this message. 

This information element shall be included or excluded as defined in TS 24.010. This information element should not 
be transmitted unless explicitly required by TS 24.010. 

9.3.23.2.11 CLIR suppression 

The information element may be included by the MS (see TS 24.081). If this information element is included the CLIR 
invocation IE shall not be included. 

9.3.23.2.12 CLIR invocation 

The information element may be included by the MS (see TS 24.081). If this information element is included the CLIR 
suppression IE shall not be included. 

9.3.23.2.13 CC Capabilities 

This information element may be included by the mobile station to indicate its call control capabilities. 
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9.3.23a start CC $(CCBS)$ 



A Network that does not support the "Network initiated MO call" option shall treat this message as a message with 
message type not defined for the PD. 

This message is sent by the mobile station to the network to open a Call Control transaction which the network has 
requested the mobile station to open. 

See Table 9.70b/TS 24.008. 

Message type: START CC 

Significance: local 

Direction: mobile station to network 

Table 9.70b/TS 24.008: START CC message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Start CC 
message type 


Message type 
10.4 


M 


V 


1 


15 


CC Capabilities 


Call Control CapabiUties 
10.5.4.5a 





TLV 


3 



9.3.23a.1 CC Capabilities 

This information element may be included by the mobile station to indicate its call control capabilities 

9.3.24 Start DTMF 

This message is sent by the mobile station to the network and contains the digit the network should reconvert back into 
a DTMF tone which is then applied towards the remote user. 

See table 9.7 1/TS 24.008. 

Message type: START DTMF 

Significance: local 

Direction: mobile station to network 
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Table 9.71/TS 24.008: START DTMF message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Start DTMF 
message type 


Message type 
10.4 


M 


V 


1 


2C 


Keypad facility 


Keypad facility 
10.5.4.17 


M 


TV 


2 



9.3.25 Start DTMF Acknowledge 



This message is sent by the network to the mobile station to indicate the successful initiation of the action requested by 
the START DTMF message (conversion of the digit contained in this message into a DTMF tone). 

See table 9.72/TS 24.008. 

Message type: START DTMF ACKNOWLEDGE 

Significance: local 

Direction: network to mobile station 

Table 9.72/TS 24.008: START DTMF ACKNOWLEDGE message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Start DTMF acknowledge 
message type 


Message type 
10.4 


M 


V 


1 


2C 


Keypad facility 


Keypad facility 
10.5.4.17 


M 


TV 


2 



9.3.25.1 Keypad facility 



This information element contains the digit corresponding to the DTMF tone that the network applies towards the 
remote user. 



9.3.26 Start DTMF reject 



This message is sent by the network to the mobile station, if the network can not accept the START DTMF message. 
See table 9.73/TS 24.008. 

Message type: START DTMF REJECT 

Significance: local 

Direction: network to mobile station 
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Table 9.73/TS 24.008: START DTMF REJECT message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Start DTMF reject 
message type 


Message type 
10.4 


M 


V 


1 




Cause 


Cause 
10.5.4.11 


M 


LV 


3-31 



9.3.27 Status 

This message is sent by the mobile station or the network at any time during a call to report certain error conditions 
listed in section 8. It shall also be sent in response to a STATUS ENQUIRY message. 

See table 9.74/TS 24.008. 

Message type: STATUS 

Significance: local 

Direction: both 

Table 9.74/TS 24.008: STATUS message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Status 
message type 


Message type 
10.4 


M 


V 


1 




Cause 


Cause 
10.5.4.11 


M 


LV 


3-31 




Call state 


Call state 
10.5.4.6 


M 


V 


1 


24 


Auxiliary states 


Auxiliary states 
10.5.4.4 


O 


TLV 


3 



9.3.27.1 



Auxiliary states 



The information element is included if and only if the call state is "active" or "mobile originating modify" and any 
auxiliary state is different from "idle". For the definition of the auxiliary states see TS 24.083 and TS 24.084 
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9.3.28 status enquiry 



This message is sent by the mobile station or the network at any time to soHcit a STATUS message from the peer layer 
3 entity. Sending of STATUS message in response to a STATUS ENQUIRY message is mandatory. 

See table 9.75/TS 24.008. 

Message type: STATUS ENQUIRY 

Significance: local 

Direction: both 

Table 9.75/TS 24.008: STATUS ENQUIRY message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 

10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Status enquiry 
message type 


Message type 
10.4 


M 


V 


1 



9.3.29 Stop DTMF 



This message is sent by a mobile station to the network and is used to stop the DTMF tone sent towards the remote user. 
See table 9.76/TS 24.008. 

Message type: STOP DTMF 

Significance: local 

Direction: mobile station to network 

Table 9.76/TS 24.008: STOP DTMF message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Stop DTMF 
message type 


Message type 
10.4 


M 


V 


1 



9.3.30 Stop DTMF acknowledge 

This message is sent by the network to the mobile station to indicate that the sending of the DTMF tone has been 
stopped. 

See table 9.77/TS 24.008. 

Message type: STOP DTMF ACKNOWLEDGE 

Significance: local 
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Direction: network to mobile station 

Table 9.77/TS 24.008: STOP DTMF ACKNOWLEDGE message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Stop DTMF acknowledge 
message type 


Message type 
10.4 


M 


V 


1 



9.3.31 User information 

This message is sent by the mobile station to the network to transfer information to the remote user. This message is 
also sent by the network to the mobile station to deliver information transferred from the remote user. This message is 
used if the user-to-user transfer is part of an allowed information transfer as defined in TS 24.010. 

See table 9.78/TS 24.008. 

Message type: USER INFORMATION 

Significance: access 

Direction: both 

Table 9.78/TS 24.008: USER INFORMATION message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Call control 
protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




User Information 
message type 


Message type 
10.4 


M 


V 


1 




User-user 


User-user 
10.5.4.25 


M 


LV 


3-131 


AO 


More data 


More data 
10.5.4.19 





T 


1 



9.3.31.1 



User-user 



Some networks may only support a maximum length of 35 octets. Procedures for interworking are not currently defined 
and are for further study. 



9.3.31.2 



More data 



The information element is included by the sending user to indicate that another USER INFORMATION message 
pertaining to the same message block will follow. 
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9.4 GPRS Mobility IVIanagement IVIessages 
9.4.1 Attach request 

This message is sent by the MS to the network in order to perform a GPRS or combined GPRS attach. See 
table 9.4. 1/TS 24.008. 

Message type: ATTACH REQUEST 

Significance: dual 

Direction: MS to network 

Table 9.4.1/TS 24.008: ATTACH REQUEST message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Skip indicator 


Skip indicator 
10.3.1 


M 


V 


Va 




Attach request message identity 


IVIessage type 
10.4 


M 


V 


1 




IVIS network capability 


MS network capability 
10.5.5.12 


M 


LV 


2 




Attach type 


Attach type 
10.5.5.2 


M 


V 


Va 




GPRS ciphering key sequence 
number 


Ciphering key sequence number 
10.5.1.2 


M 


V 


Va 




DRX parameter 


DRX parameter 
10.5.5.6 


M 


V 


2 




P-TMSI or IMSI 


Mobile identity 
10.5.1.4 


M 


LV 


6-9 




Old routing area identification 


Routing area identification 
10.5.5.15 


M 


V 


6 




MS Radio Access capability 


MS Radio Access capability 
10.5.5.12a 


M 


LV 


6-31 


19 


Old P-TIVISI signature 


P-TMSI signature 
10.5.5.8 





TV 


4 


17 


Requested READY timer 
value 


GPRS Timer 
10.5.7.3 





TV 


2 


9- 


TIVISl status 


TMSI status 
10.5.5.4 





TV 


1 



9.4.1.1 



Old P-TMSI signature 



This IE is included if a valid P-TMSI and P-TMSI signature are stored in the MS. 

9.4.1 .2 Requested READY timer value 

This IE may be included if the MS wants to indicate a preferred value for the READY timer. 

9.4.1.3 TIVISl status 

This IE shall be included if the MS performs a combined GPRS attach and no valid TMSI is available. 

9.4.2 Attach accept 

This message is sent by the network to the MS to indicate that the corresponding attach request has been accepted. See 
table 9.4.2/TS 24.008. 

Message type: ATTACH ACCEPT 

Significance: dual 



£75/ 



(3G TS 24.008 version 3.2.1 Release 1999) 



233 



ETSI TS 124 008 V3.2.1 (2000-01) 



Direction: network to MS 

Table 9.4.2/TS 24.008: ATTACH ACCEPT message content 



IE! 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Skip indicator 


Skip indicator 
10.3.1 


M 


V 


1/2 




Attach accept message identity 


IVIessage type 
10.4 


M 


V 


1 




Attach result 


Attach result 
10.5.5.1 


M 


V 


1/2 




Force to standby 


Force to standby 
10.5.5.7 


M 


V 


1/2 




Periodic RA update timer 


GPRS Timer 
10.5.7.3 


M 


V 


1 




Radio priority for SIVIS 


Radio priority 
10.5.7.2 


M 


V 


1/2 




Spare half octet 


Spare half octet 
10.5.1.8 


M 


V 


1/2 




Routing area identification 


Routing area identification 
10.5.5.15 


M 


V 


6 


19 


P-TIVISI signature 


P-TMSI signature 
10.5.5.8 





TV 


4 


17 


Negotiated READY timer 
value 


GPRS Timer 
10.5.7.3 





TV 


2 


18 


Allocated P-TMSI 


Mobile identity 
10.5.1.4 





TLV 


7 


23 


MS identity 


Mobile identity 
10.5.1.4 





TLV 


6-7 


25 


GMM cause 


GMM cause 
10.5.5.14 





TV 


2 



9.4.2.1 P-TMSI signature 

This IE may be included to assign an identity to the MS's GMM context. 

9.4.2.2 Negotiated READY timer 

This IE may be included to indicate a value for the READY timer. 

9.4.2.3 Allocated P-TMSI 

This IE may be included to assign a P-TMSI to an MS in case of a GPRS or combined GPRS attach. 

9.4.2.4 MS identity 

This IE may be included to assign or unassign a TMSI to an MS in case of a combined GPRS attach. 

9.4.2.5 GMM cause 

This IE shall be included when IMSI attach for non-GPRS services was not successful during a combined GPRS attach 
procedure. 

9.4.3 Attach complete 

This message is sent by the MS to the network if a P-TMSI and/or a TMSI was included within the attach accept 
message. See table 9.4.3/TS 24.008. 

Message type: ATTACH COMPLETE 
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Significance: dual 
Direction: MS to network 



Table 9.4.3/TS 24.008: ATTACH COMPLETE message content 



IE! 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Skip indicator 


Skip indicator 
10.3.1 


M 


V 


1/2 




Attach complete message identity 


IVIessage type 
10.4 


M 


V 


1 



9.4.4 Attach reject 



This message is sent by the network to the MS to indicate that the corresponding attach request has been rejected. See 
table 9.4.4/TS 24.008. 

Message type: ATTACH REJECT 

Significance: dual 

Direction: network to MS 

Table 9.4.4/TS 24.008: ATTACH REJECT message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Skip indicator 


Skip indicator 
10.3.1 


M 


V 


1/2 




Attach reject message identity 


IVIessage type 
10.4 


M 


V 


1 




GIVIM cause 


GMM cause 
10.5.5.14 


M 


V 


1 



9.4.5 Detach request 



9.4.5.1 Detach request (mobile terminated detach) 

This message is sent by the network to request the release of a GMM context. See table 9.4.5. 1/TS 24.008. 
Message type: DETACH REQUEST 
Significance: dual 
Direction: network to MS 
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Table 9.4.5.1/TS 24.008:DETACH REQUEST message content 



IE! 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Sl<ip indicator 


Skip indicator 
10.3.1 


M 


V 


1/2 




Detach request message identity 


IVIessage type 
10.4 


M 


V 


1 




Detach type 


Detach type 
10.5.5.5 


M 


V 


1/2 




Force to standby 


Force to standby 
10.5.5.7 


M 


V 


1/2 


25 


GIVIIVI cause 


GMM cause 
10.5.5.14 





TV 


2 



9.4.5.1.1 GMM cause 

This IE shall be included in case the detach reason has to be indicated to the MS, e.g. due to a failed IMEI check. 

9.4.5.2 Detach request (mobile originating detach) 

This message is sent by the MS to request the release of a GMM context. See table 9.4.5.2/TS 24.008. 
Message type: DETACH REQUEST 
Significance: dual 
Direction: MS to network 

Table 9.4.5.2/TS 24.008:DETACH REQUEST message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Skip indicator 


Skip indicator 
10.3.1 


M 


V 


1/2 




Detach request message identity 


IVIessage type 
10.4 


M 


V 


1 




Detach type 


Detach type 
10.5.5.5 


M 


V 


1/2 




Spare half octet 


Spare half octet 
10.5.1.8 


M 


V 


1/2 


18 


P-TMSI 


IVIobile identity 
10.5.1.4 





TLV 


7 


19 


P-TMSI signature 


P-TIVISI signature 
10.5.5.8 





TLV 


5 



9.4.5.2.1 P-TMSI 
This IE shall be included by the MS. 

9.4.5.2.2 P-TMSI signature 

This IE shall be included if the MS has a valid P-TMSI signature. 



9.4.6 Detach accept 



9.4.6.1 Detach accept (mobile terminated detach) 

This message is sent by the MS to indicate that the detach procedure has been completed. See table 9.4.6. 1/TS 24.008. 
Message type: DETACH ACCEPT 
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Significance: dual 
Direction: MS to network 



Table 9.4.6.1/TS 24.008:DETACH ACCEPT message content 



IE! 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Skip indicator 


Skip indicator 
10.3.1 


M 


V 


1/2 




Detacli accept message identity 


IVIessage type 
10.4 


M 


V 


1 



9.4.6.2 Detach accept (mobile originating detach) 

This message is sent by the network to indicate that the detach procedure has been completed. See table 9.4.6. 2/TS 
24.008. 

Message type: DETACH ACCEPT 

Significance: dual 

Direction: network to MS 

Table 9.4.6.2/TS 24.008:DETACH ACCEPT message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Skip indicator 


Skip indicator 
10.3.1 


M 


V 


1/2 




Detach accept message identity 


Message type 
10.4 


M 


V 


1 




Force to standby 


Force to standby 
10.5.5.7 


M 


V 


1/2 




Spare half octet 


Spare half octet 
10.5.1.8 


M 


V 


1/2 



9.4.7 P-TMSI reallocation command 

This message is sent by the network to the MS to reallocate a P-TMSI. See table 9.4.7/TS 24.008. 
Message type: P-TMSI REALLOCATION COMMAND 
Significance: dual 
Direction: network to MS 
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Table 9.4.7/TS 24.008: P-TMSI REALLOCATION COMMAND message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Skip indicator 


Skip indicator 
10.3.1 


M 


V 


1/2 




P-TIVISI reallocation command 
message identity 


Message type 
10.4 


M 


V 


1 




Allocated P-TMSI 


Mobile identity 
10.5.1.4 


M 


LV 


6 




Routing area identification 


Routing area identification 
10.5.5.15 


M 


V 


6 




Force to standby 


Force to standby 
10.5.5.7 


M 


V 


1/2 




Spare half octet 


Spare half octet 
10.5.1.8 


M 


V 


1/2 


19 


P-TMSI signature 


P-TMSI signature 
10.5.5.8 





TV 


4 



9.4.7.1 P-TMSI signature 

This IE may be included to assign an identity to the MS's GMM context. 

9.4.8 P-TMSI reallocation complete 

This message is sent by the MS to the network to indicate that reallocation of a P-TMSI has taken place. See 
table 9.4.8/TS 24.008. 

Message type: P-TMSI REALLOCATION COMPLETE 

Significance: dual 

Direction: MS to network 

Table 9.4.8/TS 24.008: P-TMSI REALLOCATION COMPLETE message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Skip indicator 


Skip indicator 
10.3.1 


M 


V 


1/2 




P-TMSI reallocation complete 
message identity 


Message type 
10.4 


M 


V 


1 



9.4.9 Authentication and ciphering request 

This message is sent by the network to the MS to initiate authentication of the MS identity. Additionally, the ciphering 
mode is set, indicating whether ciphering will be performed or not. See table 9.4.9/GSM 24.008. 

Message type: AUTHENTICATION AND CIPHERING REQUEST 

Significance: dual 

Direction: network to MS 
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Table g.4.9/GSM 24.008: AUTHENTICATION AND CIPHERING REQUEST message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Sl<ip indicator 


Skip indicator 
10.3.1 


M 


V 


1/2 




Authentication and ciphering 
request message identity 


Message type 
10.4 


M 


V 


1 




Ciphering algorithm 


Ciphering algorithm 
10.5.5.3 


M 


V 


1/2 




IMEISV request 


IMEISV request 
10.5.5.10 


M 


V 


1/2 




Force to standby 


Force to standby 
10.5.5.7 


M 


V 


1/2 




A&C reference number 


A&C reference number 
10.5.5.19 


M 


V 


1/2 


21 


Authentication parameter RAND 


Authentication parameter RAND 
10.5.3.1 





TV 


17 


8 


GPRS ciphering key sequence 
number 


Ciphering key sequence number 
10.5.1.2 


C 


TV 


1 


28 


Authentication parameter 
AUTN 


Authentication parameter AUTN 
10.5.3.1.2 





TLV 


14-19 



9.4.9.1 Authentication Parameter RAND 

This IE shall only be included if authentication shall be performed. 

9.4.9.2 GPRS ciphering key sequence number 

This IE is included if and only if the Authentication parameter RAND is contained in the message. 

9.4.9.3 Authentication Parameter AUTN 

This IE shall be present if and only if the authentication challenge is a UMTS authentication challenge. The presence or 
absence of this IE defines- in the case of its absence- a GSM authentication challenge or- in the case of its presence- a 
UMTS authentication challenge. 

9.4.10 Authentication and ciphering response 

This message is sent by the MS to the network in response to an Authentication and ciphering request message. See 
table 9.4.10/TS 24.008. 

Message type: AUTHENTICATION AND CIPHERING RESPONSE 

Significance: dual 
Direction: MS to network 
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Table 9.4.1 0/TS 24.008: AUTHENTICATION AND CIPHERING RESPONSE message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Sl<ip indicator 


Skip indicator 
10.3.1 


M 


V 


1/2 




Authentication and ciphering 
response message identity 


GPRS message type 
10.4 


M 


V 


1 




A&C reference number 


A&C reference number 
10.5.5.19 


M 


V 


1/2 




Spare half octet 


Spare half octet 
10.5.1.8 


M 


V 


1/2 


22 


Authentication parameter 
Response 


Authentication Response parameter 
10.5.3.2 





TV 


5 


23 


IMEISV 


Mobile identity 
10.5.1.4 





TLV 


11 


29 


Authentication Response 
parameter (extension) 


Authentication Response parameter 
10.5.3.2.1 





TLV 


14 



9.4.10.1 Authentication Response Parameter 

This IE is included if authentication was requested within the corresponding authentication and ciphering request 
message. This IE contains the SRES, if the authentication challenge was for GSM or the RES (all or just the 4 most 
significant octets of) if it is a UMTS authentication challenge (see also 9.4.10.2) 

9.4.10.2 IMEISV 

This IE is included if requested within the corresponding authentication and ciphering request message. 

9.4.10.3 Authentication Response Parameter (extension) 

This IE shall be included if and only if the authentication challenge was a UMTS authentication challenge and the RES 
parameter is greater than 4 octets in length. It shall contain the least significant remaining bits of the RES (the four 
most significant octets shall be sent in the Authentication Response Parameter IE (see 9.2.3.1)) 

9.4.10a PS Authentication Failure (UMTS authentication challenge) 

This message is sent by the mobile station to the network to indicate that authentication of the network has failed. See 
table 9.4.10a/TS 24.008. 

Message type: PS AUTHENTICATION FAILURE 

Significance: dual 

Direction: mobile station to network 
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Table 9.4.1 Oa/TS 24.008: PS AUTHENTICATION FAILURE message content 



lEI 


Information element 


Type / Reference 


Presence 


Format 


Length 




Mobility management 
Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Skip Indicator 


Skip Indicator 
10.3.1 


M 


V 


1/2 




PS Authentication Failure 
Message type 


Message type 
10.4 


M 


V 


1 




GMM Cause 


GMM Cause 
10.5.5.14 


M 


V 


1 


30 


Response from SIM 


Response from SIM 

10.5.3.2.2 


O 


T 


30-32 



9.4.1 Oa.1 Response from SIM 

This IE shall be sent if and only if the GMM cause was 'PS synch failure.' It shall include the response to the 
authentication challenge from the SIM, which is made up of the RANDms and the AUTS parameters (see TS 33.102). 

9.4.1 1 Authentication and ciplnering reject 

This message is sent by the network to the MS to indicate that authentication has failed (and that the receiving MS shall 
abort all activities). See table 9.4.11/TS 24.008. 

Message type: AUTHENTICATION AND CIPHERING REJECT 

Significance: dual 
Direction: network to MS 

Table 9.4.11/TS 24.008: AUTHENTICATION AND CIPHERING REJECT message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Sl<ip indicator 


Skip indicator 
10.3.1 


M 


V 


1/2 




Authentication and ciphering 
reject message identity 


IVIessage type 
10.4 


M 


V 


1 



9.4.12 Identity request 

This message is sent by the network to the MS to request submission of the MS identity according to the specified 
identity type. See table 9.4.12/TS 24.008. 

Message type: IDENTITY REQUEST 

Significance: dual 

Direction: network to MS 
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Table 9.4.1 2/TS 24.008: IDENTITY REQUEST message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Sl<ip indicator 


Skip indicator 
10.3.1 


M 


V 


1/2 




Identity request message identity 


Message type 
10.4 


M 


V 


1 




Identity type 


Identity type 2 
10.5.5.9 


M 


V 


1/2 




Force to standby 


Force to standby 
10.5.5.7 


M 


V 


1/2 



9.4.13 Identity response 

This message is sent by the MS to the network in response to an identity request message providing the requested 
identity. See table 9.4.13/TS 24.008. 

Message type: IDENTITY RESPONSE 

Significance: dual 

Direction: MS to network 

Table 9.4.13/TS 24.008: IDENTITY RESPONSE message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Skip indicator 


Skip indicator 
10.3.1 


M 


V 


1/2 




Identity response message 
identity 


Message type 
10.4 


M 


V 


1 




Mobile identity 


Mobile identity 
10.5.1.4 


M 


LV 


4- 10 



9.4.14 Routing area update request 



This message is sent by the MS to the network either to request an update of its location file or to request an IMSI 
attach for non-GPRS services. See table 9.4.14/TS 24.008. 

Message type: ROUTING AREA UPDATE REQUEST 

Significance: dual 

Direction: MS to network 
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Table 9.4.1 4/TS 24.008: ROUTING AREA UPDATE REQUEST message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Skip indicator 


Skip indicator 
10.3.1 


M 


V 


1/2 




Routing area update request 
message identity 


Message type 
10.4 


M 


V 


1 




Update type 


Update type 
10.5.5.18 


M 


V 


1/2 




GPRS ciphering l<ey sequence 
number 


Ciphering key sequence number 
10.5.1.2 


M 


V 


1/2 




Old routing area identification 


Routing area identification 
10.5.5.15 


M 


V 


6 




IVIS Radio Access capability 


MS Radio Access capability 
10.5.5.12a 


M 


LV 


6-31 


19 


Old P-TMSI signature 


P-TMSI signature 
10.5.5.8 





TV 


4 


17 


Requested READY timer value 


GPRS Timer 
10.5.7.3 





TV 


2 


27 


DRX parameter 


DRX parameter 
10.5.5.6 





TV 


3 


9- 


TMSI status 


TMSI status 
10.5.5.4 





TV 


1 


18 


P-TMSI 


Mobile identity 
10.5.1.4 





TLV 


7 



9.4.14.1 Old P-TMSI signature 

This IE is included by the MS if it was received from the network in an ATTACH ACCEPT or ROUTING AREA 
UPDATE ACCEPT message. 

9.4.1 4.2 Requested READY timer value 

This IE may be included if the MS wants to indicate a preferred value for the READY timer. 

9.4.14.3 DRX parameter 

This IE may be included if the MS wants to indicate new DRX parameters. 

9.4.14.4 TMSI Status 

This IE shall be included if the MS performs a combined routing area update and no valid TMSI is available. 

9.4.14.5 P-TMSI (UMTS only) 

This IE shall be included by the MS. 

9.4.15 Routing area update accept 

This message is sent by the network to the MS to provide the MS with GPRS mobility management related data in 
response to a routing area update request message . See table 9.4.15/TS 24.008. 

Message type: ROUTING AREA UPDATE ACCEPT 

Significance: dual 

Direction: network to MS 
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Table 9.4.15/TS 24.008: ROUTING AREA UPDATE ACCEPT message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Sl<ip indicator 


Skip indicator 
10.3.1 


M 


V 


1/2 




Routing area update accept 
message identity 


IVIessage type 
10.4 


M 


V 


1 




Force to standby 


Force to standby 
10.5.5.7 


M 


V 


1/2 




Update result 


Update result 
10.5.5.17 


M 


V 


1/2 




Periodic RA update timer 


GPRS Timer 
10.5.7.3 


M 


V 


1 




Routing area identification 


Routing area identification 
10.5.5.15 


M 


V 


6 


19 


P-TMSI signature 


P-TIVISI signature 
10.5.5.8 





TV 


4 


18 


Allocated P-TMSI 


IVlobile identity 
10.5.1.4 





TLV 


7 


23 


MS identity 


IVlobile identity 
10.5.1.4 





TLV 


7 


26 


List of Receive N-PDU Numbers 


Receive N-PDU Number list 
10.5.5.11 





TLV 


4-17 


17 


Negotiated READY timer value 


GPRS Timer 
10.5.7.3 





TV 


2 


25 


GIVIM cause 


GMM cause 
10.5.5.14 





TV 


2 



9.4.15.1 P-TMSI signature 

This IE may be included to assign an identity to the MS's GMM context. 

9.4.15.2 Allocated P-TMSI 

This IE may be included to assign a P-TMSI to an MS in case of a GPRS or combined routing area updating procedure. 

9.4.15.3 MS identity 

This IE may be included to assign or unassign a TMSI to a MS in case of a combined routing area updating procedure. 

9.4.1 5.4 List of Receive N-PDU Numbers 

This IE shall be included in case of an inter SGSN routing area updating, if there are PDP contexts that have been 
activated in acknowledged transfer mode. 

9.4.1 5.5 Negotiated READY timer value 

This IE may be included to indicate a value for the READY timer. 

9.4.15.6 GMM cause 

This IE shall be included if IMSI attach was not successful for non-GPRS services during a combined GPRS routing 
area updating procedure. 



9.4.1 6 Routing area update complete 



This message shall be sent by the MS to the network in response to a routing area update accept message if a P-TMSI 
and/or a TMSI has been assigned and/or if there are established LLC connections. See table 9.4.16/TS 24.008. 

Message type: ROUTING AREA UPDATE COMPLETE 

Significance: dual 
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Direction: MS to network 

Table 9.4.16/TS 24.008: ROUTING AREA UPDATE COMPLETE message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Sl<ip indicator 


Skip indicator 
10.3.1 


M 


V 


1/2 




Routing area update complete 
message identity 


Message type 
10.4 


M 


V 


1 


26 


List of Receive N-PDU Numbers 


Receive N-PDU Number list 
10.5.5.11 





TLV 


4-17 



9.4.16.1 List of Receive N-PDU Numbers 

This IE shall be included if the routing area update accept message contained this IE. 

9.4.17 Routing area update reject 

This message is sent by the network to the MS in order to reject the routing area update procedure. See table 9.4.17/TS 
24.008. 

Message type: ROUTING AREA UPDATE REJECT 

Significance: dual 
Direction: network to MS 

Table 9.4.17/TS 24.008: ROUTING AREA UPDATE REJECT message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Skip indicator 


Skip indicator 
10.3.1 


M 


V 


1/2 




Routing area update reject 
message identity 


IVIessage type 
10.4 


M 


V 


1 




GIVIM cause 


GMM cause 
10.5.5.14 


M 


V 


1 




Force to standby 


Force to standby 
10.5.5.7 


M 


V 


1/2 




Spare half octet 


Spare half octet 
10.5.1.8 


M 


V 


1/2 



9.4.18 GMM Status 

This message is sent by the MS or by the network at any time to report certain error conditions listed in section 8. See 
table 9.4. 18/TS 24.008. 

Message type: GMM STATUS 

Significance: local 

Direction: both 
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Table 9.4.1 8/TS 24.008: GMM STATUS message content 



IE! 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Sl<ip indicator 


Skip indicator 
10.3.1 


M 


V 


1/2 




GIVIIVI Status message identity 


Message type 
10.4 


M 


V 


1 




GIVIIVI cause 


GMM cause 
10.5.5.14 


M 


V 


1 



9.4.19 GMM Information 

This message is sent by the network at any time to sent certain information to the MS. 
See table 9.4. 19/TS 24.008. 

Message type: GMM INFORMATION 

Significance: local 

Direction: network to MS 

Table 9.4.1 9/TS 24.008: GMM INFORMATION message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Skip indicator 


Skip indicator 
10.3.1 


M 


V 


1/2 




GMM Information message 
identity 


Message type 
10.4 


M 


V 


1 


43 


Full name for network 


Network name 
10.5.3.5a 





TLV 


3-? 


45 


Short name for network 


Network name 
10.5.3.5a 





TLV 


3-? 


46 


Network time zone 


Time zone 
10.5.3.8 





TV 


2 


47 


Network time and time zone 


Time zone and time 
10.5.3.9 





TV 


8 


48 


LSA Identity 


LSA Identifier 
10.5.3.11 





TLV 


2-5 


49 


Network Daylight Saving Time 


Daylight Saving Time 
10.5.3.12 





TLV 


3 



9.4.19.1 



Full name for network 



This IE may be sent by the network. If this IE is sent, the contents of this IE indicate the "full length name of the 
network" that the network wishes the mobile station to associate with the MCC and MNC contained in the routing area 
identification of the current cell. 



9.4.19.2 



Short name for network 



This IE may be sent by the network. If this IE is sent, the contents of this IE indicate the "abbreviated name of the 
network" that the network wishes the mobile station to associate with the MCC and MNC contained in the routing area 
identification of the cell the MS is currently in. 



9.4.19.3 



Network time zone 



This IE may be sent by the network. The mobile station should assume that this time zone applies to the routing area of 
the cell the MS is currently in. 

If the network time zone has been adjusted for Daylight Saving Time, the network shall indicate this by including the IE 
Network Daylight Saving Time. 
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9.4.1 9.4 Network time zone and time 

This IE may be sent by the network. The mobile station should assume that this time zone applies to the routing area the 
MS is currently in. The mobile station shall not assume that the time information is accurate. 

If the network time zone has been adjusted for Daylight Saving Time, the network shall indicate this by including the IE 
Network Daylight Saving Time. 

9.4.19.5 LSA Identity 

This IE may be sent by the network. The contents of this IE indicate the LSA identity of the serving cell. 

9.4.1 9.6 Network Daylight Saving Time 

This IE may be sent by the network. If this IE is sent, the contents of this IE indicates the value that has been used to 
adjust the network time zone. 

9.4.20 Service Request (UMTS only) 

This message is sent by the MS to transfer to establish logical association between the MS and the network. See 
table 9.4.20/TS 24.008. 

Message type: Service Request 

Significance: dual 

Direction: MS to network 

Table 9.4.20/TS 24.008: Contents of Service Request message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Skip indicator 


Skip indicator 
10.3.1 


M 


V 


1/2 




Service Request 


IVIessage type 
10.4 


M 


V 


1 




Cipliering key sequence number 


Ciphering key sequence number 
10.5.1.2 


M 


V 


1/2 




Service type 


Service type 
10.5.5.x 


M 


V 


1/2 




P-TMSI 


Mobile station identity 
10.5.7.4 


M 


LV 


5 


19 


P-TMSI signature 


P-TIVISI signature 
10.5.5.8 





TV 


4 



9.4.20.1 P-TMSI signature 

This IE is included if a valid P-TMSI signature is available. 

9.4.21 Service Accept (UMTS only) 

This message is sent by the network in response to a Service Request message. See table 9.4.21/TS 24.008. 
Message type: Service Accept 
Significance: dual 
Direction: network to MS 
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Table 9.4.21/TS 24.008: Contents of Service Accept message content 



IE! 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Skip indicator 


Skip indicator 
10.3.1 


M 


V 


1/2 




Service Accept 


IVIessage type 
10.4 


M 


V 


1 



9.4.22 Service Reject (UMTS only) 



This message is sent by the network to the UE in order to reject the Service request procedure. See table 9.4.22/TS 
24.008. 

Message type: Service Accept 

Significance: dual 

Direction: network to MS 

Table 9.4.22/TS 24.008: Contents of Service Reject message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Skip indicator 


Skip indicator 
10.3.1 


M 


V 


1/2 




Service Reject 


IVIessage type 
10.4 


M 


V 


1 




GMM cause 


GMM cause 
10.5.5.14 


M 


V 


1 



9.5 GPRS Session IVIanagement IVIessages 
9.5.1 Activate PDP context request 

This message is sent by the MS to the network to request activation of a PDP context. 
See table 9.5. 1/TS 24.008. 

Message type: ACTIVATE PDP CONTEXT REQUEST 

Significance: global 
Direction: MS to network 
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Table 9.5.1/TS 24.008: ACTIVATE PDP CONTEXT REQUEST message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Activate PDP context request 
message identity 


Message type 
10.4 


M 


V 


1 




Requested NSAPI 


Network service access point Identifier 
10.5.6.2 


M 


V 


1 




Requested LLC SAPI 


LLC service access point identifier 
10.5.6.9 


M 


V 


1 




Requested QoS 


Quality of service 
10.5.6.5 


M 


LV 


19 




Requested PDP address 


Packet data protocol address 
10.5.6.4 


M 


LV 


3-19 


28 


Access point name 


Access point name 
10.5.6.1 





TLV 


3-102 


27 


Protocol configuration options 


Protocol configuration options 
10.5.6.3 





TLV 


3-253 



9.5.1.1 Access point name 

This IE is included in the message when the MS selects a specific external network to be connected to. 

9.5.1 .2 Protocol configuration options 

This IE is included in the message when the MS provides protocol configuration options for the external PDN. 

9.5.2 Activate PDP context accept 

This message is sent by the network to the MS to acknowledge activation of a PDP context. 
See table 9.5.2/TS 24.008. 

Message type: ACTIVATE PDP CONTEXT ACCEPT 

Significance: global 

Direction: network to MS 
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Table 9.5.2/TS 24.008: ACTIVATE PDP CONTEXT ACCEPT message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Activate PDP context accept 
message identity 


Message type 
10.4 


M 


V 


1 




Negotiated LLC SAPI 


LLC service access point identifier 
10.5.6.9 


M 


V 


1 




Negotiated QoS 


Quality of service 
10.5.6.5 


M 


LV 


19 




Radio priority 


Radio priority 
10.5.7.2 


M 


V 


1/2 




Spare half octet 


Spare half octet 
10.5.1.8 


M 


V 


1/2 


2B 


PDP address 


Packet data protocol address 
10.5.6.4 





TLV 


4-20 


27 


Protocol configuration options 


Protocol configuration options 
10.5.6.3 





TLV 


3-253 


34 


Packet Flow Identifier 


Packet Flow Identifier 
10.5.6.11 





TLV 


3 



9.5.2.1 



PDP address 



If the MS did not request a static address in the corresponding ACTIVATE PDP CONTEXT REQUEST message, the 
network shall include the PDP address IE in this ACTIVATE PDP CONTEXT ACCEPT message. 

If the MS requested a static address in the corresponding ACTIVATE PDP CONTEXT REQUEST message, the 
network shall not include the PDP address IE in this ACTIVATE PDP CONTEXT ACCEPT message. 



9.5.2.2 



Protocol configuration options 



This IE is included in the message when the network wishes to transmit protocol configuration options for the external 
PDN. 

9.5.2.3 Packet Flow Identifier 

This IE may be included if the network wants to indicate the Packet Flow Identifier associated to the PDP context. 

9.5.3 Activate PDP context reject 

This message is sent by the network to the MS to reject activation of a PDP context. 
See table 9.5.3/TS 24.008. 

Message type: ACTIVATE PDP CONTEXT REJECT 

Significance: global 
Direction: network to MS 
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Table 9.5.3/TS 24.008: ACTIVATE PDP CONTEXT REJECT message content 



IE! 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Activate PDP context reject 
message identity 


Message type 
10.4 


M 


V 


1 




SM cause 


SM Cause 
10.5.6.6 


M 


V 


1 


27 


Protocol configuration options 


Protocol configuration options 
10.5.6.3 





TLV 


3-253 



9.5.3.1 Protocol configuration options 

The protocol configuration options IE may only be inserted by the network (see TS29.060) if the SM Cause indicates 
"activation rejected by GGSN". 

9.5.4 Activate Secondary PDP Context Request 

This message is sent by the MS to the network to request activation of a secondary PDP context. See Table 
9.5.4/TS 24.008. 

Message type: ACTIVATE SECONDARY PDP CONTEXT REQUEST 

Significance: global 

Direction: MS to network 

Table 9.5.4/TS 24.008: Activate SECONDARY PDP context request message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


Va 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


Va 




Activate secondary PDP 
context request message 
identity 


Message type 
10.4 


M 


V 


1 




Requested NSAPI 


Network service access point identifier 
10.5.6.2 


M 


V 


1 




Requested LLC SAP! 


LLC service access point identifier 
10.5.6.9 


M 


V 


1 




Requested QoS 


Quality of service 
10.5.6.5 


M 


LV 


FFS 




TFT 


Traffic Flow Template 


M 


LV 


FFS 




Linked Tl 


Linked Tl 
10.5.6.7 


M 


LV 


2-3 



9.5.5 Activate Secondary PDP Context Accept 

This message is sent by the network to the MS to acknowledge activation of a secondary PDP context. See Table 
9.5.5/TS 24.008. 

Message type: ACTIVATE SECONDARY PDP CONTEXT ACCEPT 

Significance: global 
Direction: network to MS 
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Table 9.5.5/TS 24.008: ACTIVATE SECONDARY PDP CONTEXT ACCEPT message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Activate secondary PDP context 
accept message identity 


Message type 
10.4 


M 


V 


1 




Negotiated LLC SAPI 


LLC service access point identifier 
10.5.6.9 


M 


V 


1 




Negotiated QoS 


Quality of service 
10.5.6.5 


M 


LV 


FFS 




Radio priority 


Radio priority 


M 


V 


1/2 




Spare half octet 


Spare half octet 
10.5.1.8 


M 


V 


1/2 


34 


Packet Flow Identifier 


Packet Flow Identifier 
10.5.6.11 





TLV 


3 



9.5.5.1 Packet Flow Identifier 

This IE may be included if the network wants to indicate the Packet Flow Identifier associated to the PDP context. 

9.5.6 Activate Secondary PDP Context Reject 

This message is sent by the network to the UE to reject activation of a secondary PDP context. See Table 9.5.6/TS 
24.008. 

Message type: ACTIVATE SECONDARY PDP CONTEXT REJECT 

Significance: global 

Direction: network to MS 

Table 9.5.6/TS 24.008: ACTIVATE SECONDARY PDP CONTEXT REJECT message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Activate secondary PDP context 
reject message identity 


IVIessage type 
10.4 


M 


V 


1 




SM cause 


SM Cause 
10.5.6.6 


M 


V 


1 



9.5.7 Request PDP context activation 

This message is sent by the network to the MS to initiate activation of a PDP context. 
See table 9.5.7/TS 24.008. 

Message type: REQUEST PDP CONTEXT ACTIVATION 

Significance: global 

Direction: network to MS 
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Table 9.5.7/TS 24.008: REQUEST PDP CONTEXT ACTIVATION message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Request PDP context activation 
message identity 


Message type 
10.4 


M 


V 


1 




Offered PDP address 


Packet data protocol address 
10.5.6.4 


M 


LV 


3-19 


28 


Access point name 


Access point name 
10.5.6.1 





TLV 


3-102 



9.5.8 Request PDP context activation reject 

This message is sent by the MS to the network to reject initiation of a PDP context activation. 
See table 9.5.8/TS 24.008. 

Message type: REQUEST PDP CONTEXT ACTIVATION REJECT 

Significance: global 

Direction: MS to network 

Table 9.5.8/TS 24.008: REQUEST PDP CONTEXT ACTIVATION REJECT message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Request PDP context act. reject 
message identity 


Message type 
10.4 


M 


V 


1 




SM cause 


SM cause 
10.5.6.6 


M 


V 


1 


28 


Access point name 


Access point name 
10.5.6.1 





TLV 


3-102 



9.5.9 Modify PDP context request (Networl< to MS direction) 

This message is sent by the network to the MS to request modification of an active PDP context. See table 9.5.9/TS 
24.008. 

Message type: MODIFY PDP CONTEXT REQUEST (NETWORK TO MS DIRECTION) 

Significance: global 
Direction: network to MS 
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Table 9.5.9/TS 24.008: MODIFY PDP CONTEXT REQUEST (NETWORK TO MS DIRECTION) 

content 



message 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




IVIodify PDP context request 
message identity 


Message type 
10.4 


M 


V 


1 




Radio priority 


Radio priority 
10.5.7.2 


M 


V 


1/2 




Spare half octet 


Spare half octet 
10.5.1.8 


M 


V 


1/2 




Requested LLC SAP! 


LLC service access point identifier 
10.5.6.9 


M 


V 


1 




New QoS 


Quality of service 
10.5.6.5 


M 


LV 


19 


2B 


PDP address 


Packet data protocol address 
10.5.6.4 





TLV 


4-20 


34 


Packet Flow Identifier 


Packet Flow Identifier 
10.5.6.11 





TLV 


3 



9.5.9.1 



PDP address 



If the MS requested external PDN address allocation at PDP context activation via an APN and this was confirmed by 
the network in the ACTIVATE PDP CONTEXT ACCEPT message, then the network shall include the PDP address IE 
in the MODIFY PDP CONTEXT REQUEST message once the address has been actually allocated, in order to update 
the PDP context in the MS. 

9.5.9.2 Packet Flow Identifier 

This IE may be included if the network wants to indicate the Packet Flow Identifier associated to the PDP context. 

9.5.1 Modify PDP context request (MS to network direction) 

This message is sent by the MS to the network to request modification of an active PDP context. See table 9.5.10/TS 
24.008. 

Message type: MODIFY PDP CONTEXT REQUEST (MS TO NETWORK DIRECTION) 

Significance: global 

Direction: MS to network 

Table 9.5.10/TS 24.008: modify PDP context request (MS to network direction) message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Modify PDP context request 
message identity 


Message type 
10.4 


M 


V 


1 


32 


Requested LLC SAPI 


LLC service access point identifier 
10.5.6.9 





TV 


2 


30 


Requested new QoS 


Quality of service 
10.5.6.5 





TLV 


FFS 


31 


New TFT 


Traffic Flow Template 





TLV 


FFS 



9.5.1 0.1 Requested LLC SAPI 

This IE may be included in the message to request a new LLC SAPI if a new QoS is requested. 
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9.5.1 0.2 Requested new QoS 

This IE may be included in the message to request a modification of the QoS. 

9.5.10.3 New TFT 

This IE is included in the message only when the modification applies to a secondary PDP context (FES), to request 
modification of the TFT. 

9.5.1 1 Modify PDP context accept (MS to network direction) 

This message is sent by the MS to the network to acknowledge the modification of an active PDP context. See 
table 9.5. 11/TS 24.008. 

Message type: MODIFY PDP CONTEXT ACCEPT (MS TO NETWORK DIRECTION) 

Significance: global 
Direction: MS to network 

Table 9.5.11/TS 24.008: MODIFY PDP CONTEXT ACCEPT (MS TO NETWORK DIRECTION) message 

content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




IVIodify PDP context accept 
message identity 


Message type 
10.4 


M 


V 


1 



9.5.12 Modify PDP context accept (Network to MS direction) 

This message is sent by the network to the MS to acknowledge the modification of an active PDP context. See 
table 9.5. 12/TS 24.008. 

Message type: MODIFY PDP CONTEXT ACCEPT (NETWORK TO MS DIRECTION) 

Significance: global 

Direction: Network to MS 

Table 9.5.1 2/TS 24.008: modify PDP context accept (NETWORK to ms direction) message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




IVIodify PDP context accept 
message identity 


Message type 
10.4 


M 


V 


1 


30 


Negotiated QoS 


Quality of service 
10.5.6.5 


Q 


TLV 


FFS 


32 


Negotiated LLC SAPI 


LLC service access point identifier 
10.5.6.9 


Q 


TV 


2 


33 


New radio priority 


Radio priority 
10.5.7.2 


Q 


TV 


1 


34 


Packet Flow Identifier 


Packet Flow Identifier 
10.5.6.11 


Q 


TLV 


3 



9.5.12.1 Negotiated QoS 

This IE is included in the message if the network assigns a new QoS. 
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9.5.1 2.2 Negotiated LLC SAPI 

This IE is included in the message if the network assigns a new LLC SAP! 

9.5.12.3 New radio priority 

This IE is included in the message only if the network modifies the radio priority. 

9.5.1 2.4 Packet Flow Identifier 

This IE may be included if the network wants to indicate the Packet Flow Identifier associated to the PDP context. 

9.5.13 Modify PDP Context Reject 

This message is sent by the network to the UE to reject the requested modification of the TFT. The network should not 
send a MODIFY PDP CONTEXT REJECT message if the requested QoS is not available. See Table 9.5.13/TS 24.008. 

Message type: MODIFY PDP CONTEXT REJECT 

Significance: global 

Direction: network to MS 

Table 9.5.13/TS 24.008: MODIFY PDP CONTEXT REJECT message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




IVIodify PDP Context Reject 


IVIessage type 
10.4 


M 


V 


1 




SM cause 


SM Cause 
10.5.6.6 


M 


V 


1 



9.5.14 Deactivate PDP context request 

This message is sent to request deactivation of an active PDP context. See table 9.5.8/TS 24.008. 
Message type: DEACTIVATE PDP CONTEXT REQUEST 
Significance: global 
Direction: both 

Table 9.5.14/TS 24.008: DEACTIVATE PDP CONTEXT REQUEST message content 



IE! 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Deactivate PDP context request 
message identity 


Message type 
10.4 


M 


V 


1 




SM cause 


SM cause 
10.5.6.6 


M 


V 


1 


35 


Tear down indicator 


Tear down indicator 
10.5.6.10 





TV 


1 



9.5.14.1 



Tear down indicator 



This IE is included in the message in order to indicate whether only the PDP context associated with this specific TI or 
all active PDP contexts sharing the same PDP address as the PDP context associated with this specific TI shall be 
deactivated.. 
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9.5.15 Deactivate PDP context accept 

This message is sent to acknowledge deactivation of the PDP context requested in the corresponding Deactivate PDP 
context request message. See table 9.5.15/TS 24.008. 

Message type: DEACTIVATE PDP CONTEXT ACCEPT 

Significance: global 
Direction: both 

Table 9.5.15/TS 24.008: DEACTIVATE PDP CONTEXT ACCEPT message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Deactivate PDP context accept 
message identity 


IVIessage type 
10.4 


M 


V 


1 



9.5.1 6 Activate AA PDP context request (FFS in UMTS) 

This message is sent by the MS to the network to initiate activation of an AA PDP context. 
See table 9.5. 16/TS 24.008. 

Message type: ACTIVATE AA PDP CONTEXT REQUEST 

Significance: global 

Direction: MS to network 

Table 9.5.16/TS 24.008: ACTIVATE AA PDP CONTEXT REQUEST message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Activate AA PDP context request 
message identity 


IVIessage type 
10.4 


M 


V 


1 




Requested NSAPI 


Network service access point identifier 
10.5.6.2 


M 


V 


1 




Requested LLC SAPI 


LLC service access point identifier 
10.5.6.9 


M 


V 


1 




Requested QoS 


Quality of service 
10.5.6.5 


M 


LV 


19 




Requested packet data 
protocol address 


Packet data protocol address 
10.5.6.4 


M 


LV 


3-19 


28 


Access point name 


Access point name 
10.5.6.1 





TLV 


3-102 


27 


Protocol configuration options 


Protocol configuration options 
10.5.6.3 





TLV 


3-253 


29 


Requested AA-READY timer 
value 


GPRS Timer 
10.5.7.3 





TV 


2 



9.5.1 6.1 Access point name 

This IE is included in the message when the MS selects a specific external network to be connected to. 

9.5.16.2 Protocol configuration options 

This IE is included in the message when the MS provides protocol configuration options for the external PDN. 
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9.5.1 6.3 Requested AA-READY timer value 

This IE may be included if the MS wants to indicate a preferred value for the AA-READY timer. 

9.5.1 7 Activate AA PDP context accept (FFS in UMTS) 

This message is sent by the network to the MS to acknowledge the activation of an AA PDP context. See 
table 9.5. 17/TS 24.008. 

Message type: ACTIVATE AA PDP CONTEXT ACCEPT 

Significance: global 

Direction: network to MS 

Table 9.5.1 7/TS 24.008: ACTIVATE AA PDP CONTEXT ACCEPT message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Activate AA PDP context accept 
message identity 


IVIessage type 
10.4 


M 


V 


1 




Negotiated LLC SAPI 


LLC service access point identifier 
10.5.6.9 


M 


V 


1 




Negotiated QoS 


Quality of service 
10.5.6.5 


M 


LV 


19 




Allocated P-TMSI 


IVIobile identity 
10.5.1.4 


M 


LV 


6 




Packet data protocol address 


Packet data protocol address 
10.5.6.4 


M 


LV 


3-19 




Radio priority 


Radio priority 
10.5.7.2 


M 


V 


1/2 




Spare half octet 


Spare half octet 
10.5.1.8 


M 


V 


1/2 


27 


Protocol configuration options 


Protocol configuration options 
10.5.6.3 





TLV 


3-253 


29 


Negotiated AA-Ready timer value 


GPRS Timer 
10.5.7.3 





TV 


2 


34 


Packet Flow Identifier 


Packet Flow Identifier 
10.5.6.11 





TLV 


3 



9.5.17.1 Protocol configuration options 

This IE may be included if the network wishes to transmit protocol configuration options from the external PDN. 

9.5.1 7.2 Negotiated AA-Ready timer value 

This IE may be included if the network wants to indicate a value for the AA-READY timer. 

9.5.1 7.3 Packet Flow Identifier 

This IE may be included if the network wants to indicate the Packet Flow Identifier associated to the PDP context. 

9.5.1 8 Activate AA PDP context reject 

This message is sent by the network to the MS to reject the activation of an AA PDP context. See table 9.5.18/TS 
24.008. 

Message type: ACTIVATE AA PDP CONTEXT REJECT 

Significance: global 

Direction: network to MS 
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Table 9.5.1 8/TS 24.008: ACTIVATE AA PDP CONTEXT REJECT message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Activate AA PDP context reject 
message identity 


Message type 
10.4 


M 


V 


1 




SM Cause 


SM Cause 
10.5.6.6 


M 


V 


1 


27 


Protocol configuration options 


Protocol configuration options 
10.5.6.3 





TLV 


3-253 



9.5.18.1 Protocol configuration options 

The protocol configuration options IE may only be inserted by the network (see TS29.060) if the SM Cause indicates 
"activation rejected by GGSN". 

9.5.19 Deactivate AA PDP context request 

This message is sent to request deactivation of an active AA PDP context. See table 9.5. 19/TS 24.008. 
Message type: DEACTIVATE AA PDP CONTEXT REQUEST 
Significance: global 
Direction: network to MS 

Table 9.5.1 9/TS 24.008: DEACTIVATE AA PDP CONTEXT REQUEST message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Deactivate AA PDP context 
request message identity 


Message type 
10.4 


M 


V 


1 




AA deactivation cause 


AA deactivation cause 
10.5.6.8 


M 


V 


1/2 




Spare half octet 


Spare half octet 
10.5.1.8 


M 


V 


1/2 



9.5.20 Deactivate AA PDP context accept 



This message is sent to acknowledge deactivation of an AA PDP context requested by the corresponding Deactivate AA 
PDP context request message. See table 9.5.20/TS 24.008. 

Message type: DEACTIVATE AA PDP CONTEXT ACCEPT 

Significance: global 

Direction: MS to network 
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Table 9.5.20/TS 24.008: DEACTIVATE AA PDP CONTEXT ACCEPT message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




Deactivate AA PDP context 
accept message identity 


IVIessage type 
10.4 


M 


V 


1 



9.5.21 SM Status 

This message is sent by the network or the MS to pass information on the status of the indicated context and report 
certain error conditions (eg. as Usted in section 8). See table 9.5.21/TS 24.008. 

Message type: SM Status 

Significance: local 

Direction: both 

Table 9.5.21/TS 24.008: SM STATUS message content 



lEI 


Information Element 


Type/Reference 


Presence 


Format 


Length 




Protocol discriminator 


Protocol discriminator 
10.2 


M 


V 


1/2 




Transaction identifier 


Transaction identifier 
10.3.2 


M 


V 


1/2 




SM Status message identity 


Message type 
10.4 


M 


V 


1 




SM Cause 


SM Cause 
10.5.6.6 


M 


V 


1 
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10 General message format and information elements 
coding 

The figures and text in this section describe the Information Elements contents. 

10.1 Overview 

Within the Layer 3 protocols defined in GSM 24.108, every message is a standard L3 message as defined in TS 24.007 
[20]. This means that the message consists of the following parts: 

a) protocol discriminator; 

b) transaction identifier; 

c) message type; 

d) other information elements, as required. 

This organization is illustrated in the example shown in figure 10.1/TS 24.008. 



octet 1 

octet 2 
etc. . . 

Figure 10.1/TS 24.008 General message organization example 

Unless specified otherwise in the message descriptions of section 9, a particular information element shall not be 
present more than once in a given message. 

The term "default" implies that the value defined shall be used in the absence of any assignment, or that this value 
allows negotiation of alternative values in between the two peer entities. 

When a field extends over more than one octet, the order of bit values progressively decreases as the octet number 
increases. The least significant bit of the field is represented by the lowest numbered bit of the highest numbered octet 
of the field. 



8 7 6 5 


4 3 


2 1 


Transaction identifier 
or Skip Indicator 


Protocol 


discriminator 
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;ype 




Other information C- 
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required 
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10.2 Protocol Discriminator 

The Protocol Discriminator (PD) and its use are defined in TS 24.007 [20]. 

1 0.3 Skip indicator and transaction identifier 

10.3.1 Skip indicator 

Bits 5 to 8 of the first octet of every Mobility Management message and GPRS MobilityManagement message contains 
the skip indicator. A message received with skip indicator different from 0000 shall be ignored. A message received 
with skip indicator encoded as 0000 shall not be ignored (unless it is ignored for other reasons). A protocol entity 
sending a Mobility Management message or a GPRS Mobility Management message shall encode the skip indicator as 
0000. 

10.3.2 Transaction identifier 

Bits 5 to 8 of the first octet of every message belonging to the protocols "Call Control; call related SS messages" and 
"Session Managemenf'contain the transaction identifier (TI). The transaction identifier and its use are defined in 
TS 24.007 [20]. 

For the session management protocol, the extended TI mechanism may be used (see 24.007). 

10.4 IVIessage Type 

The message type IE and its use are defined in TS 24.007 [20]. Tables 10.3/TS 24.008, 10.4/TS 24.008, and 10.4a/TS 
24.008 define the value part of the message type IE used in the Mobility Management protocol, the Call Control 
protocol, and Session management protocol. 
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Table 10.2/TS 24.008: Message types for Mobility Management 



8 7 6 


5 


4 


3 


2 


1 


r 


X X 





- 


- 


- 


- 


Registration messages: 















1 


- IMSI DETACH INDICATION 












1 





- LOCATION UPDATING ACCEPT 









1 








- LOCATION UPDATING REJECT 






1 











- LOCATION UPDATING REQUEST 


X X 


1 


- 


- 


- 


- 


Security messages: 















1 


- AUTHENTICATION REJECT 












1 





- AUTHENTICATION REQUEST 









1 








- AUTHENTICATION RESPONSE 






1 
1 


1 












- CS AUTHENTICATION FAILURE 


- IDENTITY REQUEST 






1 








1 


- IDENTITY RESPONSE 






1 





1 





- TMSI REALLOCATION COMMAND 






1 





1 


1 


- TMSI REALLOCATION COMPLETE 


X X 1 





- 


- 


- 


- 


Connection management messages: 















1 


- CM SERVICE ACCEPT 












1 





- CM SERVICE REJECT 












1 


1 


- CM SERVICE ABORT 









1 








- CM SERVICE REQUEST 









1 





1 


- CM SERVICE PROMPT 









1 


1 





- NOTIFICATION RESPONSE 






1 











- CM RE-ESTABLISHMENT REQUEST 






1 








1 


- ABORT 


X X 1 


1 


- 


- 


- 


- 


Miscellaneous messages: 


















- MM NULL 















1 


- MM STATUS 












1 





- MM INFORMATION 



When the radio connection started with a core network node of eariier than R99, bit 8 shall be set to and bit 7 is 
reserved for the send sequence number in messages sent from the mobile station. In messages sent from the network, 
bits 7 and 8 are coded with a "0". See TS 24.007. 

When the radio connection started with a core network node of R'99 or later, bits 7 and 8 are reserved for the send 
sequence number in messages sent from the mobile station. In messages sent from the network, bits 7 and 8 are coded 
with a "0". See TS 24.007. 
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Table 10.3/TS 24.008: Message types for Call Control and call related SS messages 



8 


7 


6 


5 


4 


3 


2 


1 






X 


X 




















escape to nationally specific 
message types ; see 1) below 


X 


X 








_ 


_ 


_ 


_ 


C 


all establishment messages: 



















1 


- 


ALERTING 










1 











- 


CALL CONFIRMED 
















1 





- 


CALL PROCEEDING 













1 


1 


1 


- 


CONNECT 










1 


1 


1 


1 


- 


CONNECT ACKNOWLEDGE 










1 


1 


1 





- 


EMERGENCY SETUP 
















1 


1 


- 


PROGRESS 













1 








- 


CC-ESTABLISHMENT 













1 


1 





- 


CC-ESTABLISHMENT CONFIRMED 










1 





1 


1 


- 


RECALL 










1 








1 


- 


START CC 













1 





1 


- 


SETUP 


X 


X 





1 


- 


- 


- 


- 


c 


all information phase messages: 













1 


1 


1 


- 


MODIFY 










1 


1 


1 


1 


- 


MODIFY COMPLETE 
















1 


1 


- 


MODIFY REJECT 






















- 


USER INFORMATION 










1 











- 


HOLD 










1 








1 


- 


HOLD ACKNOWLEDGE 










1 





1 





- 


HOLD REJECT 










1 


1 








- 


RETRIEVE 










1 


1 





1 


- 


RETRIEVE ACKNOWLEDGE 










1 


1 


1 





- 


RETRIEVE REJECT 


X 


X 


1 





- 


- 


- 


- 


c 


all clearing messages: 













1 





1 


- 


DISCONNECT 










1 


1 





1 


- 


RELEASE 










1 





1 





- 


RELEASE COMPLETE 


X 


X 


1 


1 


_ 


_ 


_ 


_ 


Miscellaneous messages: 










1 








1 


- 


CONGESTION CONTROL 










1 


1 


1 





- 


NOTIFY 










1 


1 





1 


- 


STATUS 













1 








- 


STATUS ENQUIRY 













1 





1 


- 


START DTMF 



















1 


- 


STOP DTMF 
















1 





- 


STOP DTMF ACKNOWLEDGE 













1 


1 





- 


START DTMF ACKNOWLEDGE 













1 


1 


1 


- 


START DTMF REJECT 










1 





1 





- 


FACILITY 



1): 



When used, the message type is defined in the following octet(s), according to the national specification. 



When the radio connection started with a core network node of earlier than R99, bit 8 shall be set to and bit 7 is 
reserved for the send sequence number in messages sent from the mobile station. In messages sent from the network, 
bits 7 and 8 are coded with a "0". See TS 24.007. 

When the radio connection started with a core network node of R'99 or later, bits 7 and 8 are reserved for the send 
sequence number in messages sent from the mobile station. In messages sent from the network, bits 7 and 8 are coded 
with a "0". See TS 24.007. 
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Table 10.4/TS 24.008: Message types for GPRS mobility management 



Bits 
















8 


7 


6 


5 


4 


3 


2 


1 












- 


- 


- 


- 


- 


- 


Mobility management 


messages 























1 


Attach request 






















1 





Attach accept 






















1 


1 


Attach complete 



















1 








Attach reject 



















1 





1 


Detach request 



















1 


1 





Detach accept 
















1 











Routing area update 


request 














1 








1 


Routing area update 


accept 














1 





1 





Routing area update 


complete 














1 





1 


1 


Routing area update 


reject 














1 


1 








Service Request 
















1 


1 





1 


Service Accept 
















1 


1 


1 





Service Reject 













1 














P-TMSI reallocation 


command 











1 











1 


P-TMSI reallocation 


complete 











1 








1 





Authentication and 


ciphering req 











1 








1 


1 


Authentication and 


ciphering resp 











1 





1 








Authentication and 


ciphering rej 











1 


1 


1 








PS Authentication Failure | 











1 





1 





1 


Identity request 













1 





1 


1 





Identity response 










1 

















GMM status 










1 














1 


GMM information 





Table 10.4a/TS 24.008: Message types for GPRS session management 



Bits 

8 7 6 5 

1-- 



4 3 2 1 



01000001 
01000010 
01000011 

01000100 
01000101 

01000110 
01000111 

01001000 
01001001 
01001010 
01001011 
01001100 

01001101 
01001110 
01001111 

01010000 
01010001 
01010010 

01010011 
01010100 



Session management messages 

Activate PDP context request 
Activate PDP context accept 
Activate PDP context reject 

Request PDP context activation 
Request PDP context activation rej. 

Deactivate PDP context request 
Deactivate PDP context accept 

Modify PDP context request (Network to MS direction) 

Modify PDP context accept (MS to network direction) 

Modify PDP context request (MS to network direction) 

Modify PDP context accept (Network to MS direction) 
Modify PDP context reject 

Activate secondary PDP context request 
Activate secondary PDP context accept 
Activate secondary PDP context reject 

Activate AA PDP context request 
Activate AA PDP context accept 
Activate AA PDP context reject 

Deactivate AA PDP context request 
Deactivate AA PDP context accept 



01010101 SM Status 
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10.5 Other information elements 

The different formats (V, LV, T, TV, TLV) and the four categories of information elements (type 1, 2, 3, and 4) are 
defined in TS 24.007. 

The first octet of an information element in the non-imperative part contains the lEI of the information element. If this 
octet does not correspond to an lEI known in the message, the receiver shall determine whether this IE is of type 1 or 2 
(i.e. it is an information element of one octet length) or an IE of type 4 (i.e. that the next octet is the length indicator 
indicating the length of the remaining of the information element) (see TS 24.007). 

This allows the receiver to jump over unknown information elements and to analyse any following information 
elements. 

The information elements which are common for at least two of the three protocols Radio Resources management. 
Mobility Management and Call Control, are listed in section 10.5.1. 

The information elements for the protocols Mobility Management and Call Control are listed in sections 10.5.3 and 
10.5.4 respectively. Default information element identifiers are listed in annex K. 

NOTE: Different information elements may have the same default information element identifier if they belong to 
different protocols. 

The descriptions of the information element types in sections 10.5.1, 10.5.3, and 10.5.4 are organized in alphabetical 
order of the IE types. Each IE type is described in one subsection. 

The subsection may have an introduction: 

- possibly explaining the purpose of the IE; 

- possibly describing whether the IE belongs to type 1, 2, 3, 4 or 5; 

- possibly indicating the length that the information element has if it is either type 5 or if it is used in format TV 
(type 1 and 3) or TLV (type 4). 

A figure of the subsection defines the structure of the IE indicating: 

- possibly the position and length of the lEI. (However it depends on the message in which the IE occurs whether 
the IE contains an lEL); 

the fields the IE value part is composed of; 

- possibly the position and length of the length indicator. (However it depends on the IE type whether the IE 
contains a length indicator or not.); 

- possibly octet numbers of the octets that compose the IE (see clause a) below). 

Finally, the subsection contains tables defining the structure and value range of the fields that compose the IE value 
part. The order of appearance for information elements in a message is defined in section 9. 

The order of the information elements within the imperative part of messages has been chosen so that information 
elements with 1/2 octet of content (type 1) go together in succession. The first type 1 information element occupies bits 
1 to 4 of octet N, the second bits 5 to 8 of octet N, the third bits 1 to 4 of octet N + 1 etc. If the number of type 1 
information elements is odd then bits 5 to 8 of the last octet occupied by these information elements contains a spare 
half octet IE in format V. 

Where the description of information elements in this Technical Specification contains bits defined to be "spare bits", 
these bits shall set to the indicated value (0 or 1) by the sending side, and their value shall be ignored by the receiving 
side. With few exceptions, spare bits are indicated as being set to "0" in TS 24.008. 

The following rules apply for the coding of type 4 information elements: 

a) The octet number of an octet (which is defined in the figure of a subsection) consists of a positive integer, 
possibly of an additional letter, and possibly of an additional asterisk, see clause f). The positive integer 
identifies one octet or a group of octets. 
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b) Each octet group is a self contained entity. The internal structure of an octet group may be defined in alternative 

ways. 

c) An octet group is formed by using some extension mechanism. The preferred extension mechanism is to extend 
an octet (N) through the next octet(s) (Na, Nb, etc.) by using bit 8 in each octet as an extension bit. 

The bit value "0" indicates that the octet group continues through to the next octet. The bit value "1" indicates 
that this octet is the last octet of the group. If one octet (Nb) is present, the preceding octets (N and Na) shall also 
be present. 

In the format descriptions appearing in section 10.5.1 to 10.5.4, bit 8 is marked "0/1 ext" if another octet follows. 
Bit 8 is marked " 1 ext" if this is the last octet in the extension domain. 

Additional octets may be defined in later versions of the protocols ("1 ext" changed to "0/1 ext") and equipments 
shall be prepared to receive such additional octets; the contents of these octets shall be ignored. However the 
length indicated in sections 9 and 10 only takes into account this version of the protocols. 

d) In addition to the extension mechanism defined above, an octet (N) may be extended through the next octet(s) 

(N+1, N+2 etc.) by indications in bits 7-1 (of octet N). 

e) The mechanisms in c) and d) may be combined. 

f) Optional octets are marked with asterisks (*). 

10.5.1 Common information elements. 



10.5.1.1 Cell identity 

The purpose of the Cell Identity information element is to identify a cell within a location area. 

The Cell Identity information element is coded as shown in figure 10.5. 1/TS 24.008 and table 10.5. 1/TS 24.008. 

The Cell Identity is a type 3 information element with 3 octets length. 

87654321 

+ 

I I Cell Identity lEI 



CI value 



CI value (continued) 



octet 1 
octet 2 
octet 3 



Figure 10.5. 1/TS 24.008 Ce/Z/denWy information element 



Table 10.5. 1/TS 24.008: Ce///c/enWy information element 



CI value. Cell identity value (octet 2 and 3) 

In the CI value field bit 8 of octet 2 is the most 
significant bit and bit 1 of octet 3 the least 
significant bit. 

The coding of the cell identity is the 
responsibility of each administration. Coding 
using full hexadecimal representation may be used. 
The cell identity consists of 2 octets. 



1 0.5.1 .2 Ciphering Key Sequence Number 

In a GSM authentication challenge, the purpose of the Ciphering Key Sequence Number information element is to make 
it possible for the network to identify the ciphering key Kc which is stored in the mobile station without invoking the 
authentication procedure. 
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The ciphering key sequence number is allocated by the network and sent with the AUTHENTICATION REQUEST 
message to the mobile station where it is stored together with the calculated ciphering key Kc. 

The Ciphering Key Sequence Number information element is coded as shown in figure 10.5.2/TS 24.008 and 
table 10.5.2/TS 24.008. 

In a UMTS authentication challenge, the purpose of the Ciphering Key Sequence Number information element is to 
make it possible for the network to identify the ciphering key CK and integrity key IK which are stored in the MS 
without invoking the authentication procedure. CK and IK form a Key Set Identifier (KSI) (see TS 33.102) which is 
encoded the same as the CKSN and is therefore included in the CKSN field. 

The ciphering key sequence number is a type 1 information element. 

7 6 5 4 3 2 1 




Ciphering Key 
Sequence Number 
lEI 




spare 



key sequence 



octet 1 



Figure 10.5.2/TS 24.008 Ciphering Key Sequence A/umber information element 



Table 10.5.2/TS 24.008: Ciphiering Key Sequence Number information element 



Key sequence (octet 1) 

Bits 
3 2 1 



through Possible values for the ciphering key 

110 sequence number 

111 No key is available (MS to network) ; 
Reserved (network to MS) 



1 0.5.1 .3 Location Area Identification 

The purpose of the Location Area Identification information element is to provide an unambiguous identification of 
location areas within the area covered by the GSM system. 

The Location Area Identification information element is coded as shown in figure 10.5.3/TS 24.008 and table 10.5.3/TS 
24.008. 

The Location Area Identification is a type 3 information element with 6 octets length. 

87654321 



Location Area Identification lEI 



MCC digit 2 



MNC digit 3 



MNC digit 2 



MCC digit 1 
MCC digit 3 



MNC digit 1 



LAC 



LAC (continued) 



octet 1 
octet 2 
octet 3 
octet 4 
octet 5 
octet 6 



Figure 10.5.3/TS 24.008 Location Area Identification information element 
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Table 10.5.3/TS 24.008: Location Area Identification information element 



MCC, Mobile country code (octet 2 and 3) 

The MCC field is coded as in CCITT Rec. E212, Annex A. 

If the LAI is deleted the MCC and MNC shall take the 
value from the deleted LAI. 

In abnormal cases, the MCC stored in the mobile 
station can contain elements not in the set 
{0, 1 ... 9}. In such cases the mobile station should 
transmit the stored values using full hexadecimal 
encoding. When receiving such an MCC, the network 
shall treat the LAI as deleted. 

MNC, Mobile network code (octet 3 bits 5 to 8, octet 4) 
The coding of this field is the responsibility of each 
administration but BCD coding shall be used. The 
MNC shall consist of 2 or 3 digits. For PCS 1900 for 
NA, Federal regulation mandates that a 3-digit MNC 
shall be used. However a network operator may decide to 
use only two digits in the MNC in the LAI over the 
radio interface. In this case, bits 5 to 8 of octet 3 
shall be coded as "1111". Mobile equipment shall accept 
LAI coded in such a way. 

Note 1: In earlier versions of this protocol, the 
possibility to use a one digit MNC in LAI was provided 
on the radio interface. However as this was not used 
this possibility has been deleted. 

Note 2: In earlier versions of this protocol, bits 5 to 
8 of octet 3 were coded as "1111". Mobile equipment 
compliant with these earlier versions of the protocol 
may be unable to understand the 3-digit MNC format of 
the LAI, and therefore unable to register on a network 
broadcasting the LAI in this format. 

In abnormal cases, the MNC stored in the mobile 
station can have 

- digit 1 or 2 not in the set {0, 1 ... 9}, or 

- digit 3 not in the set {0, 1 ...9, F} hex. 
In such cases the mobile station 

shall transmit the stored values using full hexadecimal 
encoding. When receiving such an MNC, the 
network shall treat the LAI as deleted. 

The same handling shall apply for the network, if a 3- 
digit MNC is sent by the mobile station to a network 
using only a 2-digit MNC. 

LAC, Location area code (octet 5 and 6) 

In the LAC field bit 8 of octet 5 is the most 

significant bit and bit 1 of octet 6 the least 

significant bit. 

The coding of the location area code is the 

responsibility of each administration except that 

two values are used to mark the LAC, and hence the 

LAI, as deleted. Coding using full hexadecimal 

representation may be used. The location area code 

consists of 2 octets. 

If a LAI has to be deleted then all bits of the 

location area code shall be set to one with the 

exception of the least significant bit which shall be 

set to zero. If a SIM is inserted in a Mobile Equipment 

with the location area code containing all zeros, then 

the Mobile Equipment shall recognise this LAC as part 

of a deleted LAI 



10.5.1.4 



Mobile Identity 



The purpose of the Mobile Identity information element is to provide either the international mobile subscriber identity, 
IMSI, the temporary mobile subscriber identity, TMSI/P-TMSI, the international mobile equipment identity, IMEI or 
the international mobile equipment identity together with the software version number, IMEISV. 
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The IMSI shall not exceed 15 digits, the TMSI/P-TMSI is 4 octets long, and the IMEI is composed of 15 digits, the 
IMEISV is 16 digits (see TS 23.003). 

For packet paging the network shall select the mobile identity type with the following priority: 

1- P-TMSI: The P-TMSI shall be used if it is available. 

2- IMSI: The IMSI shall be used in cases where no P-TMSI is available. 

For all other transactions except emergency call establishment, emergency call re-establishment, mobile terminated call 
establishment, the identification procedure, the GMM identification procedure, the GMM authentication and ciphering 
procedure and the ciphering mode setting procedure, the mobile station and the network shall select the mobile identity 
type with the following priority: 

1- TMSI: The TMSI shall be used if it is available. 

2- IMSI: The IMSI shall be used in cases where no TMSI is available. 

For mobile terminated call establishment the mobile station shall select the same mobile identity type as received from 
the network in the PAGING REQUEST message. 

For emergency call establishment and re-establishment the mobile station shall select the mobile identity type with the 
following priority: 

1- TMSI: The TMSI shall be used if it is available. 

2- IMSI: The IMSI shall be used in cases where no TMSI is available. 

3- IMEI: The IMEI shall be used in cases where no SIM is available or the SIM is considered as not valid by the 

mobile station or no IMSI or TMSI is available. 

In the identification procedure and in the GMM identification procedure the mobile station shall select the mobile 
identity type which was requested by the network. 

In the ciphering mode setting procedure and in the GMM authentication and ciphering procedure the mobile shall select 
the IMEISV. 

The Mobile Identity information element is coded as shown in figure 10.5.4/TS 24.008 and table 10.5.4/TS 24.008. 

The Mobile Identity is a type 4 information element with a minimum length of 3 octet and 1 1 octets length maximal. 
Further restriction on the length may be applied, e.g. number plans. 



7 



6 5 4 3 

Mobile Identity lEI 



1 



Length of mobile identity contents 



Identity digit 1 



odd/ 
even 

indie 



Type of identity 



Identity digit p+1 



Identity digit p 



octet 1 
octet 2 
octet 3 

octet 4* 



Figure 10.5.4/TS 24.008 Mobile /c/enf/fy information element 
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Table 10.5.4/TS 24.008: Mobile /c/enf/fy information element 



T 

Type of 


identity (octet 3) 






1_ 


Bits 










3 2 1 










1 


IMSI 








10 


IMEI 








oil 


IMEISV 








10 


TMSI/P-TMSI 











No Identity note 1) 








All other values are reserved. 








Odd/even 


indication (octet 3) 








Bit 
4 













even number of identity digits and 
the TMSl/P-TMSI is used 


al 


so when 


1 


odd number of identity digits 






Identity 


digits (octet 3 etc) 








For the 


IMSI, IMEI and IMEISV 


this field is 


CO 


ded using 


BCD cod 


ing. If the number of 


identity digits 


is even 


then bi 


ts 5 to 8 of the last octet shall 


be 


filled 


with an 


end mark coded as "1111". 






If the mobile identity is the 


TMSl/P-TMSl then 


bits 5 


to 8 of 


octet 3 are coded as ' 


1111" and bit 


8 


of octet 


4 is the 


most significant bit 


and bit 1 of the 


last 


octet th 


e least significant bit. The coding 


of 


the 


TMSI/P-TMSI is left open for each administration. 



NOTE 1: This can be used in the case when a fill paging message without any valid identity has to be sent on the 
paging subchannel. 



10.5.1.5 



Mobile Station Classmark 1 



The purpose of the Mobile Station Classmark 1 information element is to provide the network with information 
concerning aspects of high priority of the mobile station equipment. This affects the manner in which the network 
handles the operation of the mobile station. The Mobile Station Classmark information indicates general mobile station 
characteristics and it shall therefore, except for fields explicitly indicated, be independent of the frequency band of the 
channel it is sent on. 

The Mobile Station Classmark 1 information element is coded as shown in figure 10.5.5/TS 24.008 and table 10.5.5/TS 
24.008. 



The Mobile Station Classmark 7 is a type 3 information element with 2 octets length. 

87654321 




spare 



Revision 
level 



Mobile Station Classmark 1 lEl 
A5/1 



ES 
IND 



RF power 
capability 



octet 1 



octet 2 



Figure 10.5.5/TS 24.008 Mobile Station Classmark 1 information element 
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Table 10.5.5/TS 24.008: Mobile Station Ciassmarii 1 information element 



Revision level (octet 2) 

Bits 
76 

Reserved for phase 1 

1 Used by phase 2 mobile stations 

All other values are reserved for future use. 

ES IND (octet 2, bit 5) "Controlled Early Classmark Sending" option implementation 

"Controlled Early Classmark Sending" option is not implemented in the MS 

1 "Controlled Early Classmark Sending" option is implemented in the MS 



NOTE: The value of the ES IND gives the implementation in the MS. It's value is not dependent 
on the broadcast SI 3 Rest Octet <Early Classmark Sending Controb value. 



1 encryption algorithm A5/1 not available 



RF power capability (octet 2) 

When the GSM 450, GSM 480, GSM 850, GSM P, E [or R] 900 band is used (for exceptions see 
3.4.18): 

Bits 

321 

class 1 

1 class 2 

1 class 3 

1 1 class 4 

1 class 5 

All other values are reserved. 

When the DCS 1800 or PCS 1900 band is used (for exceptions see 3.4.18): 
Bits 
321 

class 1 
1 class 2 
1 class 3 

All other values are reserved. 



10.5.1.6 



Mobile Station Classmark 2 



The purpose of the Mobile Station Classmark 2 information element is to provide the network with information 
concerning aspects of both high and low priority of the mobile station equipment. This affects the manner in which the 
network handles the operation of the mobile station. The Mobile Station Classmark information indicates general 
mobile station characteristics and it shall therefore, except for fields explicitly indicated, be independent of the 
frequency band of the channel it is sent on. 

The Mobile Station Classmark 2 information element is coded as shown in figure 10.5.6/TS 24.008, table 10.5.6a/TS 
24.008 and table 10.5.6b/TS 24.008. 

The Mobile Station Classmark 2 is a type 4 information element with 5 octets length. 
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Mobile station classmark 2 lEI 



Length of mobile station classmark 2 contents 

A5/1 



spare 



Revision 
level 



ES 
IND 



RF power 
capability 







spare 

CM3 



PS 
capa . 


spare 



SS Screen. 
Indicator 



LCSVA 
CAP 



UCS2 



SM ca 
pabi . 

SoLSA 



VBS 
CMSP 



VGCS 
A5/3 



FC 
A5/2 



octet 1 
octet 2 
octet 3 
octet 4 
octet 5 



Figure 10.5.6/TS 24.008 Mobile Station C/assmarfc 2 information element 

NOTE: Owing to backward compatibility problems, bit 8 of octet 4 should not be used unless it is also checked 
that the bits 8, 7 and 6 of octet 3 are not "0 0". 
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Table 10.5.6a/TS 24.008: Mobile Station C/assmarfc 2 information element 



Revision level (octet 3) 
Bits 
76 
Reserved for phase 1 

1 Used by phase 2 mobile stations 

1 Used by UMTS mobile stations 
1 1 Reserved for future use 

ES IND (octet 3, bit 5) "Controlled Early Classmark Sending" option implementation 

"Controlled Early Classmark Sending" option is not implemented in the MS 

1 "Controlled Early Classmark Sending" option is implemented in the MS 

NOTE: The value of the ES IND gives the implementation in the MS. It's value is not dependent 
on the broadcast SI 3 Rest Octet <Early Classmark Sending Control> value. 

A5/1 algorithm supported (octet 3, bit 4) 

encryption algorithm A5/1 available 

1 encryption algorithm A5/1 not available 

RF Power Capability (Octet 3) 

When GSM 450, GSM 480, GSM 850, GSM 900 P, E [or R] band is used (for exceptions see 3): 
Bits 



321 




000 


class 1 


001 


class 2 


01 


class 3 


01 1 


class 4 


1 00 


class 5 


All othe 


r values are reserved. 


When the DCS 1800 or PCS 1900 band is used (for exceptions see 3) 


Bits 




321 




000 


class 1 


001 


class 2 


01 


class 3 



All other values are reserved. 

PS capability (pseudo-synchronization capability) (octet 4) 
Bit 7 

PS capability not present 

1 PS capability present 

SS Screening Indicator (octet 4) 
Bits 

65 

defined in TS 24.080 

1 defined in TS 24.080 

1 defined in TS 24.080 
1 1 defined in TS 24.080 

SM capability (MT SMS pt to pt capability) (octet 4) 
Bit 4 

Mobile station does not support mobile terminated point to point SMS 

1 Mobile station supports mobile terminated point to point SMS 



£75/ 



(3G TS 24.008 version 3.2.1 Release 1999) 



274 



ETSI TS 124 008 V3.2.1 (2000-01) 



Table 10.5.6b/TS 24.008: Mobile Station C/assmar/c 2 information elementVBS notification 

reception (octet 4) 

Bits 

no VBS capability or no notifications wanted 

1 VBS capability and notifications wanted 

VGCS notification reception (octet 4) 
Bit 2 

no VGCS capability or no notifications wanted 

1 VGCS capability and notifications wanted 

FG Frequency Capability (octet 4) 

When GSM 400 band is used (for exceptions see 3): 

Biti 

Reserved for future use (for definition of frequency bands see GSM 05.05) 

Note: This bit conveys no information about support or non support of the E-GSM or R-GSM 
band when transmitted on a GSM 400 channel. 

When GSM 850 band is used (for exceptions see 3): 

Biti 

Reserved for future use (for definition of frequency bands see GSM 05.05) 

Note: This bit conveys no information about support or non support of the E-GSM or R-GSM 

band when transmitted on a GSM 850 channel. 

When a GSM 900 band is used (for exceptions see 3): 

Biti 

The MS does not support the E-GSM or R-GSM band (For definition of frequency bands 
see GSM 05.05) 

1 The MS does support the E-GSM or R-GSM (For definition of frequency bands see 
GSM 05.05) 

Note : For mobile station supporting the R-GSM band further information can be found in MS 
Classmark 3. 



When the DCS 1800 band is used (for exceptions see 3): 

Biti 

Reserved for future use (for definition of frequency bands see GSM 05.05) 

Note: This bit conveys no information about support or non support of the E-GSM or R-GSM 
band when transmitted on a DCS 1800 channel. 

When the PCS 1900 band is used (for exceptions see 3.4.18): 

Biti 

Reserved for future use (for definition of frequency bands see GSM 05.05) 

Note: This bit conveys no information about support or non support of the E-GSM or R-GSM 
band when transmitted on a PCS 1900 channel. 

CM3 (octet 5, bit 8) 

The MS does not support any options that are indicated in CMS 

1 The MS supports options that are indicated in classmark 3 IE 

LCS VA capability (LCS value added location request notification capability) (octet 5,bit 6) 

LCS value added location request notification capability not supported 

1 LCS value added location request notification capability supported 

UCS2 treatment (octet 5, bit 5) 

This information field indicates the likely treatment by the mobile station of UCS2 encoded 

character strings. If not included, the value shall be assumed by the receiver. 

the ME has a preference for the default alphabet (defined in GSM 03.38) over UCS2. 

1 the ME has no preference between the use of the default alphabet and the use of UCS2. 



SoLSA (octet 5, bit 4) 

The ME does not support SoLSA. 

1 The ME supports SoLSA. 



£75/ 



(3G TS 24.008 version 3.2.1 Release 1999) 



275 



ETSI TS 124 008 V3.2.1 (2000-01) 



CMSP: CM Service Prompt (octet 5, bit 3) $(CCBS)$ 

"Network initiated MO CM connection request" not supported. 

1 "Network initiated MO CM connection request" supported for at least one CM protocol. 

A5/3 algorithm supported (octet 5, bit 2) 

encryption algorithm A5/3 not available 

1 encryption algorithm A5/3 available 

A5/2 algorithm supported (octet 5, bit 1) 

encryption algorithm A5/2 not available 

1 1 encryption algorithm A5/2 available 



NOTE: Additional mobile station capability information might be obtained by invoking the classmark 
interrogation procedure. 



10.5.1.7 



Mobile Station Classmark 3 



The purpose of the Mobile Station Classmark 3 information element is to provide the network with information 
concerning aspects of the mobile station. The contents might affect the manner in which the network handles the 
operation of the mobile station. The Mobile Station Classmark information indicates general mobile station 
characteristics and it shall therefore, except for fields explicitly indicated, be independent of the frequency band of the 
channel it is sent on. 

The MS Classmark 5 is a type 4 information element with a maximum of 14 octets length. 

The value part of a MS Classmark 3 information element is coded as shown in figure 10.5.7/TS 24.008 and 
table 10.5.7/TS 24.008. 

NOTE: The 14 octet hmit is so that the CLASSMARK CHANGE message will fit in one layer 2 frame. 

SEMANTIC RULE : a multiband mobile station shall provide information about all frequency bands it can support. A 
single band mobile station shall not indicate the band it supports in the Multiband Supported, GSM 400 Bands 
Supported, GSM 850 Associated Radio Capability or PCS 1 900 Associated Radio Capability fields in the MS 
Classmark 3. Due to shared radio frequency channel numbers between DCS 1800 and PCS 1900, the mobile should 
indicate support for either DCS 1800 band OR PCS 1900 band. 

SEMANTIC RULE : a mobile station shall include the MS Measurement Capability field if the Multi Slot Class field 
contains a value of 19 or greater (see GSM 05.02). 

Typically, the number of spare bits at the end is the minimum to reach an octet boundary. The receiver may add any 
number of bits set to "0" at the end of the received string if needed for correct decoding. 



<Classmark 3 Value part> ::= 

<spare bit> 

{ <Multiband supported : {000} > 

<A5 bits> I 
<Multiband supported : { 101 I 110}> 

<A5 bits> 

<Associated Radio Capability 2 : bit(4)> 

<Associated Radio Capability 1 : bit(4)> I 

<Multiband supported : {001 I 010 I 100 }> 

<A5 bits> 

<spare bit>(4) 

<Associated Radio Capability 1 : bit(4)> } 
{ I 1 <R Support> } 
{Oil <Multi Slot CapabiHty>} 

<UCS2 treatment: bit> 

<Extended Measurement Capability : bit> 
{Oil <MS measurement capability> } 
{Oil <MS Positioning Method Capability> } 
{Oil <EDGE Multi Slot Capability>} 
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{0 I l<EDGEStmct>} 

{Oil <GSM 400 Bands Supported : {01 I 10 I 11 }> 

<GSM 400 Associated Radio Capability: bit(4)> } 

{Oil <GSM 850 Associated Radio Capability : bit(4)>} 
{Oil <PCS 1900 Associated Radio Capability : bit(4)>} 
<spare bit>; 

<A5 bits> ::= <A5/7 : bit> <A5/6 : bit> <A5/5 : bit> <A5/4 : bit> ; 

<RSupport>::= 

< R-GSM band Associated Radio Capability : bit(3)>; 

<Multi Slot Capability> ::= 

<Multi Slot Class : bit(5)> ; 

< MS Measurement capability > ::= 

< SMS_VALUE : bit (4) > 

< SM_VALUE : bit (4) >; 

< MS Positioning Method Capability > ::= 

< MS Positioning Method : bit(5)>; 

<EDGE Multi Slot Capability> ::= 

<EDGE Multi Slot Class : bit(5)>; 
<EDGE Stract> : := 

<Modulation Capability : bit> 
{Oil <EDGE RE Power Capability 1: bit(2)>} 
{Oil <EDGE RE Power Capability 2: bit(2)>} 



Figure 10.5.7/TS 24.008 Mobile Station C/assmarfc 3 information element 
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Table 10.5.7/TS 24.008: Mobile Station Ciassmark 3 information element 



Multiband Supported (3 bit field) 

Band 1 supported (third bit of the field) 

P-GSM not supported 

1 P-GSM supported 

Band 2 supported (second bit of the field) 

E-GSM or R-GSM not supported 

1 E-GSM or R-GSM supported 

Band 3 supported (first bit of the field) 

DCS 1800 not supported 

1 DCS 1800 supported 

The indication of support of P-GSM band or E-GSM or R-GSM band is mutually 
exclusive . 

When the 'Band 2 supported' bit indicates support of E-GSM or R-GSM, the 
presence of the <R Support> field, see below, indicates if the E-GSM or R-GSM 
band is supported. 

In this version of the protocol, the sender indicates in this field either none, 
one or two of these 3 bands supported. If only one band is indicated, the 
receiver shall ignore the Associated Radio Capability 2. 

For single band mobile station all bits are set to 0. 

A5/4 

encryption algorithm A5/4 not available 

1 encryption algorithm A5/4 available 

A5/5 

encryption algorithm A5/5 not available 

1 encryption algorithm A5/5 available 

A5/6 

encryption algorithm A5/6 not available 

1 encryption algorithm A5/6 available 

A5/7 

encryption algorithm A5/7 not available 

1 encryption algorithm A5/7 available 

Associated Radio capability 1 and 2 

If either of P-GSM or E-GSM or R-GSM is supported, the radio capability 1 field 
indicates the radio capability for P-GSM, E-GSM or R-GSM, and the radio 
capability 2 field indicates the radio capability for DCS1800 if supported, and 
is spare otherwise. 

If none of P-GSM or E-GSM or R-GSM are supported, the radio capability 1 field 
indicates the radio capability for DCS1800, and the radio capability 2 field is 
spare . 

The radio capability contains the binary coding of the power class associated 
with the band indicated in multiband support bits (see GSMB05.05) . 

R Support 

In case where the R-GSM band is supported the R-GSM band assciated radio 
capability field contains the binary coding of the power class associated (see 
GSMiJ05.05) . A mobile station supporting the R-GSM band shall also when 
appropriate, see 10.5.1.6, indicate its support in the 'FC' bit in the Mobile 
Station Ciassmark 2 information element. 

Note: the coding of the power class for P-GSM, E-GSM, R-GSM and DCS 1800 in 
radio capability 1 and/or 2 is different to that used in the Mobile Station 
Ciassmark 1 and Mobile Station Ciassmark 2 information elements. 



(continued...) 
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Table 10.5.1.7/TS 24.008 (continued): MS Classmark 3 information element 

Multi Slot Class (5 bit field) 

In case the MS supports the use of multiple timeslots then the Multi Slot Class field is coded as the binary representation 
of the multislot class defined in TS GSM 05.02. 

UCS2 treatment 

This information field indicates the likely treatment by the mobile station of UCS2 encoded character strings. If not 
included, the value shall be assumed by the receiver. 

the ME has a preference for the default alphabet (defined in GSM 03.38) 
over UCS2. 

1 the ME has no preference between the use of the default alphabet and the 
use of UCS2. 

Extended Measurement Capability 

This bit indicates whether the mobile station supports 'Extended Measurements' or not 

the MS does not support Extended Measurements 

1 the MS supports Extended Measurements 

SMS_VALUE (Switch-Measure-Switch) (4 bit field) 

The SMS field indicates the time needed for the mobile station to switch from one radio channel to another, perform a 

neighbour cell power measurement, and the switch from that radio channel to another radio channel. 

Bits 

4321 

1/4 timeslot (-144 microseconds) 

1 2/4 timeslot (-288 microseconds) 

10 3/4 timeslot (-433 microseconds) 

1111 16/4 timeslot (-2307 microseconds) 

SIVI_VALUE (Switch-Measure) (4 bit field) 

The SM field indicates the time needed for the mobile station to switch from one radio channel to another and perform a 

neighbour cell power measurement. 

Bits 

4321 

1/4 timeslot (-144 microseconds) 

1 2/4 timeslot (-288 microseconds) 

10 3/4 timeslot (-433 microseconds) 

1111 16/4 timeslot (-2307 microseconds) 

MS Positioning Method Capability 

This bit indicates whether the MS supports Positioning Method or not for the provision of Location Services. 

MS Positioning Method (5 bit field) 

This field indicates the Positioning Method(s) supported by the mobile station. 

MS assisted E-OTD 

Bits 

0: MS assisted E-OTD not supported 

1 : MS assisted E-OTD supported 

MS based E-OTD 
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MS based E-OTD 

Bit 4 

0: MS based E-OTD not supported 

1 : MS based E-OTD supported 

MS assisted GPS 

Bits 

0: MS assisted GPS not supported 

1 : MS assisted GPS supported 

MS based GPS 

Bit 2 

0: MS based GPS not supported 

1 : MS based GPS supported 

MS conventional GPS 

Bit1 

0: conventional GPS not supported 

1 : conventional GPS supported 

EDGE Multi Slot class (5 bit field) 

In case tlie EDGE MS supports the use of multiple timeslots and the number of supported time slots is different from 
number of time slots supported for GMSK then the EDGE Multi Slot class field is included and is coded as the binary 
representation of the multislot class defined in TS GSM 05.02. 

Modulation Capability 

Modulation Capability field indicates the supported modulation scheme by MS in addition to GMSK 

8-PSK supported for downlinl< reception only 

1 8-PSK supported for uplink transmission and downlink reception 



EDGE RF Power Capability 1 (2 bit field) 

If 8-PSK is supported for both uplink and downlink, the EDGE RF Power Capability 1 field indicates the radio capability 
for GSM900. 

The radio capability contains the binary coding of the EDGE power class(see GSM(305.05). 

EDGE RF Power Capability 2 (2 bit field) 

If 8-PSK is supported for both uplink and downlink, the EDGE RF Power Capability 2 field indicates the radio capability 
for DCS1800 or PCS1900 if supported, and is not included otherwise. 

The radio capability contains the binary coding of the EDGE power class (see GSM 05.05). 
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GSM 400 Bands Supported (2 bit field) 

Bits 
2 1 

1 GSM 480 supported, GSM 450 not supported 

1 GSM 450 supported, GSM 480 not supported 
1 1 GSM 450 supported, GSM 480 supported 

GSM 400 Associated Radio Capability (4 bit field) 

If either GSM 450 or GSM 480 or both is supported, the GSM 400 Associated Radio 
Capability field indicates the radio capability for GSM 450 and/or GSM 480. 

The radio capability contains the binary coding of the power class associated 
with the band indicated in GSM 400 Bands Supported bits (see GSM 05.05). 

Note: the coding of the power class for GSM 450 and GSM 480 in GSM 400 
Associated Radio Capability is different to that used in the Mobile Station 
Classmark 1 and Mobile Station Classmark 2 information elements. 

GSM 850 Associated Radio Capability (4 bit field) 

This field indicates whether GSM 850 band is supported and its associated radio 
capability. 

The radio capability contains the binary coding of the power class associated 
with the GSM 850 band (see GSM 05.05). 

Note: the coding of the power class for GSM 850 in GSM 850 Associated Radio 
Capability is different to that used in the Mobile Station Classmark 1 and 
Mobile Station Classmark 2 information elements. 

PCS 1900 Associated Radio Capability (4 bit field) 

This field indicates whether PCS 1900 band is supported and its associated radio 
capability. 

The radio capability contains the binary coding of the power class associated 
with the PCS 1900 band (see GSM 05.05). 

Note: the coding of the power class for PCS 1900 in PCS 1900 Associated Radio 
Capability is different to that used in the Mobile Station Classmark 1 and 
Mobile Station Classmark 2 information elements. 



10.5.1.8 Spare Half Octet 

This element is used in the description of messages in section 9 when an odd number of half octet type 1 information 
elements are used . This element is filled with spare bits set to zero and is placed in bits 5 to 8 of the octet unless 
otherwise specified. 

1 0.5.1 .9 Descriptive group or broadcast call reference 

The purpose of the Descriptive Group or Broadcast Call Reference is to provide information describing a voice group 
or broadcast call. The IE of the Descriptive Group or Broadcast Call Reference is composed of the group or broadcast 
call reference together with a service flag, an acknowledgement flag, the call priority and the group cipher key number. 

The Descriptive Group or Broadcast Call Reference information element is coded as shown in figure 10.5.8/TS 24.008 
and Tablel0.5.8/TS 24.008 

The Descriptive Group or Broadcast Call Reference is a type 3 information element with 6 octets length. 
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Group or broadcast call reference lEI 


Binary coding of the group or broadcast 
call reference 








SF 


AF 


call priority 


Ciphering information 
+ + 


Spare 




octet 1 
octet 2 
octet 3 
octet 4 
octet 5 
octet 6 



Figure 10.5.8/TS 24.008 Descriptive Group or Broadcast Call Reference 
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Table 10.5.8/TS 24.008 Descriptive Group or Broadcast Call Reference 

+ + 

Binary code of the group or broadcast call reference 

The length of the binary code has 27 bits which is 

encoded in the octet 2, 3, 4 

and Bits 8,7,6 (octet 5). 

The highest bit of the BC is the bit 8 in the octet 2 

and the lowest bit is allocated in the bit 6 

in the octet 5. (see also GSMB03.03) 

SF Service flag (octet 5) 

Bit 

5 

VBS (broadcast call reference) 

1 VGCS (group call reference) 

AF Acknowledgement flag (octet 5) 
Bit 



4 









acknowledgement is not required 




1 








acknowledgement is required 






Call priority (octet 


5) 










Bit 


















3 


2 


1 



























no priority 


applied 














1 




call priority level 4 











1 







call priority level 3 











1 


1 




call priority level 2 








1 










call priority level 1 








1 





1 




call priority level 








1 


1 







call priority level B 








1 


1 


1 




call priority level A 








Cipherin 


g information (octet 6) 








Bit 


















8 


7 


6 


5 


























no ciphering 



















1 


ciphering 


with 


cipher 


key 


number 


1 








1 





ciphering 


with 


cipher 


key 


number 


2 








1 


1 


ciphering 


with 


cipher 


key 


number 


3 





1 








ciphering 


with 


cipher 


key 


number 


4 





1 





1 


ciphering 


with 


cipher 


key 


number 


5 





1 


1 





ciphering 


with 


cipher 


key 


number 


6 





1 


1 


1 


ciphering 


with 


cipher 


key 


number 


7 


1 











ciphering 


with 


cipher 


key 


number 


8 


1 








1 


ciphering 


with 


cipher 


key 


number 


9 


1 





1 





ciphering 


with 


cipher 


key 


number 


A 


1 





1 


1 


ciphering 


with 


cipher 


key 


number 


B 


1 


1 








ciphering 


with 


cipher 


key 


number 


C 


1 


1 





1 


ciphering 


with 


cipher 


key 


number 


D 


1 


1 


1 





ciphering 


with 


cipher 


key 


number 


E 


1 


1 


1 


1 


ciphering 


with 


cipher 


key 


number 


F 



10.5.1.10 Group Cipher Key Number 

The purpose of the Group Cipher Key Number is to provide information on the group cipher key to be used for 
ciphering and deciphering by the mobile station. 

The Group Cipher Key Number infoTvnation element is coded as shown in figure 10.5.9/TS 24.008 and Tablel0.5.9/TS 
24.008 

The Group Cipher Key Number is a type 1 information element with 1 octet length. 

8765 4321 



Group cipher key number 
lEI 



Group cipher key number 
+ 

Figure 10.5.9/TS 24.008 Group Cipher Key Number 
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Table 10.5.9/TS 24.008 Group Cipher Key Number 



— + 



Group 


cipher key number 




Bit 














4 


3 


2 


1 






















spare 

















1 


cipher 


key 


number 


1 








1 





cipher 


key 


number 


2 








1 


1 


cipher 


key 


number 


3 





1 








cipher 


key 


number 


4 





1 





1 


cipher 


key 


number 


5 





1 


1 





cipher 


key 


number 


6 





1 


1 


1 


cipher 


key 


number 


7 


1 











cipher 


key 


number 


8 


1 








1 


cipher 


key 


number 


9 


1 





1 





cipher 


key 


number 


A 


1 





1 


1 


cipher 


key 


number 


B 


1 


1 








cipher 


key 


number 


C 


1 


1 





1 


cipher 


key 


number 


D 


1 


1 


1 





cipher 


key 


number 


E 


1 


1 


1 


1 


cipher 


key 


number 


F 



10.5.1.10a PD and SAPI $(CCBS)$ 



The purpose of the PD and SAPI information element is to provide information concerning Protocol Discriminators and 
Service Access Point Identifiers. 

The PD ant/ 5AP/ information element is coded as shown in figure 10.5.10/TS 24.008 and table 10.5.10/TS 24.008. 

The PD and SAPI is a type 3 information element with 2 octets length. 

87654321 

--+ 

octet 1 



PD and SAPI lEI 



spare 



+- 



spare 



SAPI 



PD 



octet 2 



Figu rel 0.5.1 0/TS 24.008 
PD and SAPI information element 



Table 10.5. 1.1 0/TS 24.008: PD and S>!\P/ information element 



SAPI: Service Access Point Identifier (octet 2) 

Bits 
65 
SAPI 

1 reserved 

1 reserved 
1 1 SAPI 3 

PD: Protocol Discriminator (octet 2) 
bits 4-1 
Encoded as specified in section 1 1 .2.1 of 04.07. 



10.5.1.11 Priority Level 

The purpose of the Priority Level is to provide information defining the priority level requested or applied. The Priority 
Level IE may be included in CM_SERVICE_REQUEST, CALL_PROCEEDING and SETUP messages. 

The Priority Level information element is coded as shown in figure 10.5. 1 1/TS 24.008 and table 10.5. 1 1/TS 24.008. 
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The Priority Level is a type 1 information element with 1 octet length. 

87654321 



+ 


Priority Level 
lEI 



spare 


+ 

call priority 



octet 1 



Figure 10.5.11/TS 24.008 Priority Level 



Table 10.5.11/TS 24.008 Priority Level 



_l 









[_ 


Call p 


riority (octet 1) 






Bit 










3 2 


1 














no priority applied 







1 


call priority 


level 


4 


1 





call priority 


level 


3 


1 


1 


call priority 


level 


2 


1 





call priority 


level 


1 


1 


1 


call priority 


level 





1 1 





call priority 


level 


B 


1 1 


1 


call priority 


level 


A 



10.5.2 Radio Resource management information elements. 



See 04.18 
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10.5.3 Mobility management information elements. 
10.5.3.1 Authentication parameter RAND 

The purpose of the Authentication Parameter RAND information element is to provide the mobile station with a non- 
predictable number to be used to calculate the authentication response signature SRES and the ciphering key Kc (for a 
GSM authentication challenge), or the response RES and both the ciphering key CK and integrity key IK (for a UMTS 
authentication challenge). 

The Authentication Parameter RAND information element is coded as shown in figure 10.5.75/TS 24.008 and 
table 10.5.89/TS 24.008. 

The Authentication Parameter RAND is a type 3 information element with 17 octets length. 

87654321 



Authentication parameter RAND lEI 
RAND value 




octet 1 
octet 2 
octet 17 



Figure 10.5.75/TS 24.008 Authentication Parameter RAND information element 



Table 10.5.89/TS 24.008: Auttientication Parameter RAND information element 

+ + 

RAND value (octet 2, 3,... and 17) 

The RAND value consists of 128 bits. Bit 8 of octet 
2 is the most significant bit while bit 1 of octet 
17 is the least significant bit. 



10.5.3.1.2 



Authentication Parameter AUTN (UMTS authentication challenge only) 



The purpose of the Authentication Parameter AUTN information element is to provide the MS with a means of 
authenticating the network. 

The Authentication Parameter AUTN information element is coded as shown in figure 10.5.75. 1/TS 24.008 and table 
10.5.89. 1/TS 24.008. 

The Authentication Parameter AUTN is a type 4 information element with a minimum of 14 octets and a maximum of 
19 octets length. 
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Figure 1 0.5.75. 1/TS 24.008 Authentication Parameter AUTN iniormation element (UMTS 

authentication challenge only) 



7 6 5 4 3 2 1 



Authentication Parameter AUTN lEI 




octet 1 
octet 2 
Octet 3 



octet 19 



Table 10.5.89. 1/TS 24.008 Auttientication Parameter AUTN iniormation element (UMTS authentication 

challenge only) 



+ 

AUTN 


value (octets 


3 


to 19) 






+ 


The 


AUTN 


consists 


of 


(SQN xor AK) | | MODE 
-(32 to 64)+l+64 bit. 
(see TS 33.102) 


MAC 

3 



10.5.3.2 Authentication Response parameter 

The purpose of the authentication response parameter information element is to provide the network with the 
authentication response calculated in the SIM. 

The Authentication Parameter SRES information element is coded as shown in figure 10.5.76/TS 24.008 and 
tables 10.5.90 a & b /TS 24.008. 

The Authentication Response Parameter is a type 3 information element with 5 octets length. In a GSM authentication 
challenge, the response calculated in the SIM (SRES) is 4 bytes in length, and is placed in the Authentication Response 
Parameter information element. 

In a UMTS authentication challenge, the response calculated in the SIM (RES) may be up to 16 octets in length. The 4 
most significant octets shall be included in the Authentication Response Parameter information element. The 
remaining part of the RES shall be included in the Authentication Response Parameter (extension) IE (see 10.5.3.2.1) 



6 



3 



Authentication Response parameter lEI 



SRES value or most significant 
4 octets of RES 



octet 1 



octet 2 



octet 5 



Figure 10.5.76/TS 24.008 Auttientication Response Paramefer information element 
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Table 10.5.90a/TS 24.008: Authentication Response Parameter iniormation element 

(SRES) (GSM only) 

+ + 

SRES value (octet 2, 3, 4 and 5) 

The SRES value consists of 32 bits. Bit 8 of octet 2 
is the most significant bit while bit 1 of octet 5 
is the least significant bit. 



Table 10.5.90b/TS 24.008: Authientication Response Parameter information element (RES) (UMTS 

only) 



RES value (octet 2, 3, 4 and 5) 

This contains the most significant 4 octets of RES 
If RES>4 octets, the remaining octets of RES shall 
appear in the Authentication Response Parameter 
(extension) IE (see 10.5.3.2.1) 



10.5.3.2.1 Authentication Response Parameter (extension) (UMTS authentication challenge 

only) 

This IE is included if the authentication response parameter RES is longer than 4 octets (UMTS only) and therefore 
does not fit in the Authentication Response Parameter field (see 10.5.3.2). 

The Authentication Response parameter (extension) IE is coded as shown in figure 10.5.76. 1/TS 24.008 and table 
10.5.90. 1/TS 24.008. 

The Authentication Response parameter (extension) IE is a type 4 information element with a minimum length of 3 
octets and a maximum length of 14 octets. 

Figure 10.5.76.1/TS 24.008 Authentication Response Parameter (extension) information element 

(UMTS only) 







8 7 


6 5 4 3 


2 1 




Authenti 


cation Response 


(extension) 


lEI 


Length 


of 


Authent 


ication 


Response contents 


RES (all 


but 


4 most 


significant octets) 





octet 1 
octet 2 
octet 3 



octet 14 



Table 1 0.5.90.1 /TS 24.008: Authientication Response Parameter (extension) information element 

(RES) 

+ + 

RES (extension) value (octet 3 to 14) 

This contains all but the 4 most significant octets 
of RES 

+ + 



10.5.3.2.2 



Response from SIM (UMTS authentication challenge only) 



The purpose of the Response from SIM information element is to provide the network with the necessary information to 
begin a re-authentication procedure (see TS 33. 102) in the case of a 'PS synch failure' or a 'CS synch failure,' 
following a UMTS authentication challenge. 

The Response from SIM IE is coded as shown in figure 10.5.76.2/TS 24.008 and table 10.5.90.2/TS 24.008. 



£75/ 



(3G TS 24.008 version 3.2.1 Release 1999) 



288 



ETSI TS 124 008 V3.2.1 (2000-01) 



The Response from SIM IE is a type 4 information element with a minimum length of 30 octets and a maximum length 
of 32 octets. 

Figure 10.5.76.2/TS 24.008 Response from S/M information element (UMTS authentication challenge 

only) 





87654321 


Response from SIM lEI 


Length 


of Response from SIM contents 


Response from SIM 



octet 1 
octet 2 
octet 3 



octet 32 



Table 10.5.90.2/TS 24.008: Response from SIM information element 



Response from SIM value (octet 3 to 32) 
This contains RAND„s and AUTS (see TS 33.102) 



10.5.3.3 CM service type 

The purpose of the CM Service Type information element is to specify which service is requested from the network. 
The CM Service Type information element is coded as shown in figure 10.5.77/TS 24.008 and table 10.5.91/TS 24.008. 
The CM Service Type is a type 1 information element. 

87654321 

+ + 

I CM service type lEI | service type | octet 1 
+ + 

Figure 10.5.77/TS 24.008 CM Service Type information element 



Table 10.5.91/TS 24.008: CM Service Type information element 



Service type (octet 1) 
Bits 

4 3 2 1 



Mobile originating call establishment 
or packet mode connection establishment 
Emergency call establishment 
Short message service 
Supplementary service activation 
Voice group call establishment 
Voice broadcast call establishment 
Location Services 



All other values are reserved. 



10.5.3.4 Identity type 

The purpose of the Identity Type information element is to specify which identity is requested. 
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The I den tity Type information element is coded as shown in figure 10.5.78/TS 24.008 and table 10.5.92/TS 
24.008. 

The Identity Type is a type 1 information element . 

87654321 



Identity type lEI 



spare 


type of identity 



octet 1 



Figure 10.5.78/TS 24.008 Identity Type information element 



Table 10.5.92/TS 24.008: Identity Type information element 
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3 2 


1 









1 
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IMEI 
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IMEISV 
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TMSI 




All 


other values 


are reserved. 



10.5.3.5 Location updating type 

The purpose of the Location Updating Type information element is to indicate whether a normal updating, a periodic 
updating or an IMSI attach is wanted. It may also indicate that a follow-on request has been received from the mobile 
station CM layer. 

The Location Updating Type information element is coded as shown in figure 10.5.79/TS 24.008 and table 10.5.93/TS 
24.008. 

The Location Updating Type is a type 1 information element. 

87654321 



+ 

Location updating 
type lEI 


FOR 



spare 


+ 

LUT 



octet 1 



Figure 10.5.79/TS 24.008 Location Updating Type information element 
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Table 10.5.93/TS 24.008: Location Updating Type information element 
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10.5.3.5a Network Name 

The purpose of this information element is to pass a text string to the mobile station. 

The Network Name information element is coded as shown in figure 10.5.80/TS 24.008 and table 10.5.94/TS 24.008. 

The Network Name is a type 4 information element with a minimum length of 3 octets. No upper length limit is 
specified except for that given by the maximum number of octets in a L3 message (see GSM 04.06). 



7 



1 





Network Name lEI 




Length of Network Name contents 


ext 
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coding scheme 


Add 
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Number of spare 
bits in last octet 




Text String 



octet 1 
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octet 3 

octet 4 

octet n 
Figure 10.5.80/TS 24.008 Network Name information element 
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Table 10.5.94/TS 24.008 Network Name information element 



Number of spare bits in last octet (octet 3, bits 1 to 3) 

1 bit 8 is spare and set to "0" in octet n 

1 bits 7 and 8 are spare and set to "0" in octet n 

1 1 bits 6 to 8{inclusive) are spare and set to "0" in octet n 

1 bits 5 to 8{inclusive) are spare and set to "0" in octet n 
1 1 bits 4 to 8{inclusive) are spare and set to "0" in octet n 
1 1 bits 3 to 8{inclusive) are spare and set to "0" in octet n 
1 1 1 bits 2 to 8{inclusive) are spare and set to "0" in octet n 

ttiis field carries no information about the number of spare bits in octet n 

Add CI (octet 3, bit 4) 

The MS should not add the letters for the Country's Initials to the text string 

1 The MS should add the letters for the Country's Initials and a separator 
(e.g. a space) to the text string 

Coding Scheme (octet 3, bits 5-7) 

Cell Broadcast data coding scheme, GSM default alphabet, language unspecified, defined in GSM 03.38 

00 1 UCS2(16bit)[72] 

01 

to reserved 
1 1 1 

Text String (octet 4 to octet n, inclusive) 

Encoded according to the Coding Scheme defined by octet 3, bits 5-7 



10.5.3.6 Reject cause 

The purpose of the Reject Cause information element is to indicate the reason why a request from the mobile station is 
rejected by the network. 

The Reject Cause information element is coded as shown in figure 10.5.8 1/TS 24.008 and table 10.5.95/TS 24.008. 

The Reject Cause is a type 3 information element with 2 octets length. 
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Figure 1 0.5.81 /TS 24.008 Reject Cause information element 
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Table 10.5.95/TS 24.008: Reject Cause information element 
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Any other value received by the mobile station 
shall be treated as 0010 0010, 'Service option 
temporarily out of order'. Any other value received 
by the network shall be treated as QUO 1111, 
'Protocol error, unspecified'. 

NOTE: The listed reject cause values are defined in 
Annex G. 



10.5.3.7 Follow-on Proceed 

The purpose of the Follow-on Proceed information element is to indicate that an MM connection may be estabHshed on 
an existing RR connection. 

The Follow-on Proceed information element is coded as shown in figure 10.5.82/TS 24.008. 

The Follow-on Proceed is a type 2 information element. 

87654321 



Follow-on Proceed lEI 



octet 1 



Figure 10.5.82/TS 24.008 Follow-on Proceed information element 

10.5.3.8 Time Zone 

The purpose of this information element is to encode the local timezone in steps of 15 minutes. 

The Time Zone information element is coded as shown in figure 10.5.83/TS 24.008 and table 10.5.96/TS 24.008. 

The Time Zone is a type 3 information element with a length of 2 octets. 
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7 6 5 4 3 2 1 
+ 

Time Zone lEI octet 1 

Time Zone 

octet 2 
+ 

Figure 10.5.83/TS 24.008 Time Zone information element 



Table 10.5.96/TS 24.008 Time Zone information element 

+ + 

Time Zone (octet 2, bits 1-8) 

This field is encoded in exactly the same way as the Time 

Zone field of the TP-Service-Centre-Time-Stamp in GSMB03.40 



1 0.5.3.9 Time Zone and Time 

The purpose of this information element is to encode the local timezone in steps of 15 minutes and to indicate the time 
at which this information element may have been sent by the network. 

The Time Zone and Time information element is coded as shown in figure 10.5.84/TS 24.008 and table 10.5.97/TS 
24.008. 

The Time Zone and Time is a type 3 information element with a length of 8 octets. 

87654321 



Time Zone and Time lEl 
Year 



Month 



Day 



Hour 



Minute 



Second 



Time zone 



octet 1 

octet 2 
octet 3 
octet 4 
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octet 6 
octet 7 
octet 8 



Figure 10.5.84/TS 24.008 Time Zone and Time information element 
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Table 10.5.97/TS 24.008 Timezone and Time information element 

Year (octet 2, bits 1-8) 

This field is encoded in exactly the same way as the Year field of the TP-Service-Centre-Time-Stamp in GSM 03.40. 

IVIonth (octets, bits 1-8) 

This field is encoded in exactly the same way as the Month field of the TP-Service-Centre-Time-Stamp in GSM 03.40 

ETS 300 536). 

Day (octet 4, bits 1 -8) 

This field is encoded in exactly the same way as the Day field of the TP-Servlce-Centre-Time-Stamp in GSM 03.40. 

Hour (octet 5, bits 1-8) 

This field is encoded in exactly the same way as the Hour field of the TP-Service-Gentre-Time-Stamp in GSM 03.40. 

Minute (octet 6, bits 1-8) 

This field is encoded in exactly the same way as the Minute field of the TP-Service-Centre-Time-Stamp in 

GSM 03.40. 

Second (octet 7, bits 1 -8) 

This field is encoded in exactly the same way as the Second field of the TP-Service-Gentre-Time-Stamp in 

GSM 03.40. 

Time Zone (octet 8, bits 1-8) 

This field is encoded in exactly the same way as the Time Zone field of the TP-Service-Centre-Time-Stamp in 

GSM 03.40) 

1 0.5.3.1 CTS permission 

The purpose of the CTS permission information element is to indicate that the mobile station is allowed to use GSM- 
Cordless Telephony System in the Location Area. The CTS permission information element is coded as shown in 
figure 10.5.84a/TS 24.008. 

The CTS permission is a type 2 information element. 

87654321 

+ + 

I CTS Permission lEI I octet 1 

+ + 

Figure 10.5.84a/TS 24.008 CTS permission information element 



10.5.3.11 LSA Identifier 

This element uniquely identifies a LSA. 

The LSA Identifier information element is coded as shown in figure 10.68c/TS 24.008. 

The LSA Identifier is a type 4 information element with a length of 2 or 5 octets. 
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7 6 5 4 3 2 
LSA Identifier lEI 
Length of LSA Identifier contents 

LSA ID 

LSA ID cont . 

LSA ID cont . 



octet 1 
octet 2 
octet 3 
octet 4 
octet 5 



Figure 10.68c/TS 24.008 LSA /c/enf/f/er information element 

If the Length = 0, then no LSA ID is included. This is used to indicate that the MS has moved to an area 
where there is no LSA available for that MS. 

Octets 3-5 are coded as specified in TS 23.003, 'Identification of Localised Service Area'. Bit 8 of octet 3 is 
the most significant bit. 

1 0.5.3.1 2 Daylight Saving Time 

The purpose of this information element is to encode the Daylight Saving Time in steps of 1 hour. 

The Daylight Saving Time information element is coded as shown in figure 10.5.84b/TS 24.008 and table 10.5.97a/TS 
24.008. 

The Daylight Saving Time is a type 4 information element with a length of 3 octets. 

87654321 



Daylight Saving Time lEI 



octet 1 



* Length of Daylight Saving Time contents * octet 2 
+ + 

* spare * value * 

* * * octet 3 
+ + 

Figure 10.5.84b/TS 24.008 Daylight Saving Time information element 



Table 10.5.97a/TS 24.008: Dayiigtit Saving Time information element 



Daylight Saving Time value (octet 3) 

Bits 

2 1 

No adjustment for Daylight Saving Time 

1 +1 hour adjustment for Daylight Saving Time 
10 +2 hours adjustment for Daylight Saving Time 

1 1 Reserved 
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10.5.4 Call control information elements. 



10.5.4.1 



Extensions of codesets 



There is a certain number of possible information element identifier values using the formatting rules described in 
section 10.5: 128 from the type 3 & 4 information element format and at least 8 from the type 1 & 2 information 
element format. 

One value in the type 1 format is specified for shift operations described below. One other value in both the type 3 & 4 
and type 1 format is reserved. This leaves 133 information element identifier values available for assignment. 

It is possible to expand this structure to eight codesets of 133 information element identifier values each. One common 
value in the type 1 format is employed in each codeset to facilitate shifting from one codeset to another. The contents of 
this shift information element identifies the codeset to be used for the next information element or elements. The 
codeset in use at any given time is referred to as the "active codeset". By convention, codeset is the initially active 
codeset. 

Two codeset shifting procedures are supported: locking shift and non-locking shift. 

Codeset 5 is reserved for information elements reserved for national use. 

Codeset 6 is reserved for information elements specific to the local network (either public or private). 

Codeset 7 is reserved for user-specific information elements. 

The coding rules specified in section 10.5 shall apply for information elements belonging to any active codeset. 

Transitions from one active codeset to another (i.e. by means of the locking shift procedure) may only be made to a 
codeset with a higher numerical value than the codeset being left. 

An information element belonging to codeset 5, 6 or 7 may appear together with information elements belonging to 
codeset 0, by using the non-locking shift procedure (see section 10.5.4.3). 

A user or network equipment shall have the capability to recognize a shift information element and to determine the 
length of the following information element, although the equipment need not be able to interpret and act on the content 
of the information element. This enables the equipment to determine the start of the subsequent information element. 



1 0.5.4.2 Locking shift procedure 

The locking shift procedure employs an information element to indicate the new active codeset. The specified codeset 
remains active until another locking shift information element is encountered which specifies the use of another codeset. 
For example, codeset is active at the start of message content analysis. If a locking shift to codeset 5 is encountered, 
the next information elements will be interpreted according to the information element identifiers assigned in codeset 5, 
until another shift information element is encountered. This procedure is used only to shift to a higher order codeset 
than the one being left. 

The locking shift is valid only within that message which contains the locking shift information element. At the start of 
every message content analysis, the active codeset is codeset 0. 

The locking shift information element uses the type 1 information element format and coding shown in 
figure 10.5.85/TS 24.008 and table 10.5.98/TS 24.008. 



7 



3 



New codeset 
identification 



octet 1 



6 5 
Shift identifier 

"0" in this position indicates locking shift 

Figure 10.5.85/TS 24.008 Locking shift element 
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Table 10.5.98/TS 24.008: Locking shift element 



Codeset identification (octet 1] 
bits 3 2 1 

not applicable 



to 



1 
1 

1 1 



111 



reserved 
codeset 5: 

codeset 6: 



codeset 7: 



information elements 

for national use 

information elements specific 

to the local network 

(either public or private) 

user-specific information 

elements 



10.5.4.3 Non-locking shift procedure 

The non-locking shift procedure provides a temporary shift to the specified lower or higher codeset. The non-locking 
shift procedure uses a type 1 information element to indicate the codeset to be used to interpret the next information 
element. After the interpretation of the next information element, the active codeset is again used for interpreting any 
following information elements. For example, codeset is active at the beginning of message content analysis. If a non- 
locking shift to codeset 6 is encountered, only the next information element is interpreted according to the information 
element identifiers assigned in codeset 6. After this information element is interpreted, codeset will again be used to 
interpret the following information elements. A non-locking shift information element indicating the current codeset 
shall not be regarded as an error. 

A locking shift information element shall not follow directly a non-locking shift information element. If this 
combination is received, it shall be interpreted as though a locking shift information element had been received. 

The non-locking shift information element uses the type 1 information format and coding shown in figure 10.5.86/TS 
24.008 and table 10.5.99/TS 24.008. 



7 6 5 
Shift identifier 



3 



Temporary codeset 
identification 



octet 1 



"1" in this position indicates non-locking shift 

Figure 10.5.86/TS 24.008 Non-locking shift element 



Table 10.5.99/TS 24.008: Non-locking shift element 
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1 
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1 
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10.5.4.4 Auxiliary states 

The purpose of the auxiliary states information element is to describe the current status of the auxiliary states of a call in 
the call control states "active" and "mobile originating modify". (See TSs TS 24.083 and 04.84) 

The auxiliary states information element is coded as shown in figure 10.5.87/TS 24.008, table 10.5.100/TS 24.008 and 
table 10.5. 101/TS 24.008. 
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The auxiliary states is a type 4 information element with 3 octets length. 

87654321 
+ 

+ 



1 
ext 



Auxiliary states lEI 

Length of auxiliary states contents 

hold aux. 
spare state 
+ 

Figure 10.5.87/TS 24.008 Auxiliary states information element 



MPTY aux. 
state 



octet 1 
octet 2 
octet 3 



Table 1 0.5.1 00/TS 24.008: Auxiliary states information element 



Hold auxiliary state (octet 3) 



Bits 
4 3 


1 

1 
1 1 



idle 

hold request 
call held 
retrieve request 



Note 1 
Note 1 
Note 1 
Note 1 



Note 1: These states are defined in Rec GSMB04.83. 



Table 10.5.101/TS 24.008: Auxiliary states information element 



Multi party auxiliary state (octet 3) 
Bits 



Note 2 
Note 2 
Note 2 

Note 2 



NOTE 2: These states are defined in Rec GSMfi)04.84. 
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idle 
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MPTY request 
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call in MPTY 


1 


1 


split request 



10.5.4.5 Bearer capability 

The purpose of the bearer capability information element is to describe a bearer service. The use of the bearer capability 
information element in relation to compatibility checking is described in annex B. 

The bearer capability information element is coded as shown in figure 10.5.88/TS 24.008 and tables 10.5.102/TS 
24.008 to 10.5.1 15/TS 24.008. 

The bearer capability is a type 4 information element with a minimum length of 3 octets and a maximum length of 16 
octets. 
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Figure 10.5.88/TS 24.008 Bearer capability information element 
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NOTEs: The coding of the octets of the bearer capability information element is not conforming to ITU Q.93 1 . 

An MS shall encode the Bearer Capability infomation element according to GSM call control 
requirements also if it is requesting for a UMTS service. 

Table 10.5.102/TS 24.008: Bearer capability information element 



Radio channel requirement (octet 3), networl< to IVIS direction 
In GSM, I.e. not applicable for UMTS data services. 



Bits 6 and 7 are spare bits. The sending side (I.e. the network) shall set bit 7 to value and bit 6 to 
value 1. 

Radio channel requirement (octet 3) MS to network direction 

When information transfer capability (octet 3) indicates other values than speech: 

Bits 

76 

reserved 

1 full rate support only MS 

1 Odual rate support MS/half rate preferred 
1 1 dual rate support MS/full rate preferred 

When information transfer capability (octet 3) indicates the value speech and no speech version 

indication is present in octet 3a etc.: 

Bits 

76 

reserved 

1 full rate support only MS/fullrate speech version 1 supported 

1 dual rate support MS/half rate speech version 1 preferred, full rate speech version 1 also 
supported 

1 1 dual rate support MS/full rate speech version 1 preferred, half rate speech version 1 also 
supported 

When information transfer capability (octet 3) indicates the value speech and speech version 

indication(s) is(are) present in octet 3a etc.: 

Bits 

76 

reserved 

1 the mobile station supports at least full rate speech version 1 but does not support half rate 

speech version 1 . The complete voice codec preference is specified in octet(s) 3a etc. 

1 The mobile station supports at least full rate speech version 1 and half rate speech version 

1 . The mobile station has a greater preference for half rate speech version 1 than for full 
rate speech version 1 . The complete voice codec preference is specified in octet(s) 3a etc. 

1 1 The mobile station supports at least full rate speech version 1 and half rate speech version 
1 . The mobile station has a greater preference for full rate speech version 1 than for half 
rate speech version 1 . The complete voice codec preference is specified in octet(s) 3a etc. 



Coding standard (octet 3) 

Bit 

5 

GSM standardized coding as described below 

1 reserved 



(continued...) 
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Table 1 0.5.1 02/TS 24.008: Bearer capability information element (continued) 



Transfer mode (octet 3) 

Bit 

4 

circuit mode 

1 pacl<et mode 

Information transfer capability (octet 3) 

Bits 

321 

speech 

1 unrestricted digital information 

10 3.1 kHz audio, ex PLMN 

1 1 facsimile group 3 

1 1 Other ITC (See Octet 5a) 

1 1 1 reserved, to be used in the network. 

The meaning is: alternate speech/facsimile group 3 - starting with speech. 

All other values are reserved 



Table 1 0.5.1 03/TS 24.008 Bearer capability information element 



Octet(s) 3a etc. IVIS to network direction 
Coding 

Bit 

7 

octet used for extension of information transfer capability 

1 octet used for other extension of octet 3 

When information transfer capability (octet 3) indicates speech and coding (bit 7 in octet 3a etc.) is 
coded as 0, bits 1 through 6 are coded: 

Bits 5 and 6 are spare. 

Speech version indication (octet(s) 3a etc.) 

Bits 

4321 

OGSM full rate speech version 1 

1 OGSM full rate speech version 2 

1 OGSIVI full rate speech version 3 

1 GSM half rate speech version 1 

1 1GSM half rate speech version 3 

All other values have the meaning "speech version tbd" and shall be ignored 
when received. 

If octet 3 is extended with speech version indication(s) (octets 3a etc.), all speech versions 
supported shall be indicated and be included in order of preference (the first octet (3a) has the 
highest preference and so on). 

If information transfer capability (octet 3) indicates speech and coding (bit 7 in octet 3a etc.) is 
coded as 1 , or the information transfer capability does not indicate speech, then the extension 
octet shall be ignored. 

Octet(s) 3a etc. network to MS direction 

The octet(s) 3a etc. shall be ignored by the MS. 
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Table 10.5.104/TS 24.008: Bearer capability information element 



Compression (octet 4), network to MS direction: 

Bit 

7 

data compression not possible 

1 data compression possible 

Compression (octet 4), MS to networl< direction: 

Bit 

7 

data compression not allowed 

1 data compression allowed 

Structure (octet 4) 

Bits 
65 

service data unit integrity 

1 1 unstructured 

All other values are reserved. 

Duplex mode (octet 4) 

Bit 

4 

half duplex 

1 full duplex 

Configuration (octet 4) 

Bit 

3 

point-to-point 

All other values are reserved. 

NIRR (octet 4) 

(Negotiation of Intermediate Rate Requested) 

In GSM, i.e. not applicable for UMTS data services. 

Bit 
2 

No meaning is associated with this value. 

1 Data up to and including 4.8 kb/s, full rate, non-transparent, 6 kb/s radio interface rate is 
requested. 

Establishment (octet 4) 

Bit 

1 

demand 

All other values are reserved 
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Table 10.5.105/TS 24.008: Bearer capability information element 



Access identity (octet 5) 

Bits 

76 

octet identifier 

All ottier values are reserved 



Rate adaption (octet 5) 

Bits 

54 

no rate adaption 

1 V.1 10, I.460/X.30 rate adaptation 

1 0CCITTX.31 flag stuffing 

1 1 Other rate adaption (see octet 5a) 

Signalling access protocol (octet 5) 

Bits 
321 

1 1.440/450 

1 X.21 

1 1 reserved: was allocated in earlier phases of the protocol 

1 reserved: was allocated in earlier phases of the protocol. 
1 1 X.28 - non dedicated PAD 

1 1 X.32 

All other values are reserved. 



Table 10.5.106/TS 24.008: Bearer capability information element 



Other ITC (octet 5a) 

If the value "Other ITC" is not signalled in the field "ITC" then the contents of this field shall be 

ignored. 

Bit 
76 

restricted digital information 

All other values are reserved 



Other rate adaption (octet 5a) 

If the value " Other rate adaption" is not signalled in the field "Rate adaption" then the contents of 

this field shall be ignored. 

In GSM, the value of H.223 and H.245 shall be interpreted as 'no rate adaptation'. 

In UMTS, PIAFS shall be considered. In GSM, call shall be rejected if PIAFS requested. 



Bit 
54 

0V.120 

1 H.223 & H.245 

1 PIAFS 

All other values are reserved. 
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Table 10.5.107/TS 24.008: Bearer capability information element 



Rate adaption header/no header (octet 5b) 

Bit 
7 

Rate adaption tieader not included 

1 Rate adaption hieader included 

Multiple frame establishment support in data link (octet 5b) 

Bit 
6 

Multiple frame establishment not supported, only Ul frames allowed 

1 Multiple frame establishment supported 

Mode of operation (octet 5b) 

Bit 
5 

Bit transparent mode of operation 

1 Protocol sensitive mode of operation 

Logical link identifier negotiation (octet 5b) 

Bit 
4 

Default, LLI=256 only 

1 Full protocol negotiation, (note: A connection over which protocol negotiation will 
be executed is indicated in bit 2 of octet 5b) 

Assignor/Assignee (octet 5b) 

Bit 
3 

Message originator is "default assignee" 

1 Message originator is "assignor only" 

In band/Out of band negotiation (octet 5b) 

Bit 
2 

Negotiation is done in-band using logical link zero 

1 Negotiation is done with USER INFORMATION messages on a temporary 
signalling connection 

Bit 1 is spare and set to the value "0" 
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Table 10.5.108/TS 24.008: Bearer capability information element 



Layer 1 identity (octet 6) 

Bits 

76 

1 octet identifier 

All other values are reserved 

User information layer 1 protocol (octet 6) 

Bits 

5432 

default layer 1 protocol 

All otfier values reserved. 

Synchronous/asynchronous (octet 6) 

Bit 

1 

synchronous 

1 asynchronous 



Table 10.5.109/TS 24.008: Bearer capability information element 



Number of Stop Bits (octet 6a) 

Bit 

7 

1 bit (This value is also used in the case of synchronous mode) 

1 2 bits 

Negotiation (octet 6a) 

Bit 

6 

in-band negotiation not possible 

NOTE: See Rec. V.1 10 and X.30 

All other values are reserved 

Number of data bits excluding parity bit if present (octet 6a) 

Bit 

5 

7 bits 

1 8 bits (this value is also used in the case of bit oriented protocols) 

User rate (octet 6a) 
In GSM only. 

Bits 
4321 

1 0.3 kbit/s Recommendation X.I and V.110 

1 01.2 kbit/s Recommendation X.I and V.110 

1 1 2.4 kbit/s Recommendation X.I and V.1 1 

1 04.8 kbit/s Recommendation X.I and V.110 

1 1 9.6 kbit/s Recommendation X.I and V.1 1 

1 1 012.0 kbit/s transparent (non compliance with X.I and V.1 10) 

111 reserved: was allocated in earlier phases of the protocol. 

All other values are reserved. 

For facsimile group 3 calls the user rate indicates the first and maximum speed the mobile station 
is using. 
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Table 10.5.110/TS 24.008: Bearer capability information element 



Octet 6b for V.1 10/X.30 rate adaptation Intermediate rate (octet 6b) 
In GSM only. 



Bits 
76 

reserved 

1 reserved 

1 8 kbit/s 

1 1 16 kbit/s 

Network independent clock (NIC) on transmission (Tx) (octet 6b) (See Rec. V.110 and X.30). 
in GSM only. 



Bit 
5 

does not require to send data with network independent clock 

1 requires to send data with network independent clock 

Network independent clock (NIC) on reception (Rx) (octet 6b) (See Rec. V.1 1 and X.30) 
In GSM only. 



Bit 
4 

cannot accept data with network independent clock (i.e. sender does not support this 
optional procedure) 

1 can accept data with network independent clock (i.e. sender does support this optional 
procedure) 

Parity information (octet 6b) 

Bits 

321 

000 odd 

1 even 

1 1 none 

1 forced to 
1 1 forced to 1 

All other values are reserved. 
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Table 10.5.111/TS 24.008: Bearer capability information element 



Connection element (octet 6c) 

Bit 

76 

transparent 

1 non transparent (RLP) 

1 Oboth, transparent preferred 

1 1 both, non transparent preferred 

Tfie requesting end (e.g. the one sending the SETUP message) should use the 4 values 
depending on its capabilities to support the different modes. The answering party shall only use 
the codings 00 or 01 , based on its own capabilities and the proposed choice if any. If both MS and 
network support both transparent and non transparent, priority should be given to the MS 
preference. 

Modem type (octet 6c) 

Bits 

54321 

00000 

00001 

00010 

00011 

00100 

00101 

00110 

00111 

01000 



none 

V.21 (notel) 

V.22(note1) 

V.22 bis (notel) 

V.23 (notel) 

V.26ter(note 1) 

V.32 

modem for undefined interface 

autobauding type 1 



All other values are reserved. 
Note 1: In GSM only. 
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Table 10.5.112/TS 24.008: Bearer capability information element 



Other modem type (octet 6d) 

Bits 

76 

no other modem type specified in this field 

1 V.32bis 

1 0V.34 

All other values are reserved. 

Fixed network user rate (octet 6d) 

Bit 

54321 

Fixed network user rate not applicable/No meaning is associated 

with this value. 

1 9.6 kbit/s Recommendation X.1 and V.11 

10 14.4 kbit/s Recommendation X.I and V.1 10 

11 19.2 kbit/s Recommendation X.I and V.1 10 

10 10 32.0 kbit/s Recommendation 1.460 (note 2) 

10 1 33.6 kbit/s bit transparent (note 2) 

10 28.8 kbit/s Recommendation X.I and V.1 10 

10 1 38.4 kbit/s Recommendation X.I and V.1 10 

00110 48.0 kbit/s Recommendation X.I and V.11 0(synch) (note 1) 

00111 56.0 kbit/s Recommendation X.I and V.11 0(synch) /bit transparent 
10 64.0 kbit/s bit transparent 

10 1 33.6 kbit/s bit transparent 

10 10 32.0 kbit/s Recommendation 1.460 



All other values are reserved. 
Note 1: In GSIVI only. 
Note 2: In UMTS only 
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Table 10.5.113/TS 24.008: Bearer capability information element 



Acceptable channel codings (octet 6e), mobile station to networl< direction: 
In GSM only. 

Bit 

7 

TCH/F1 4.4 not acceptable 

1 TCH/F1 4.4 acceptable 

Bit 
6 

Spare 

Bit 
5 

TCH/F9.6 not acceptable 

1 TCH/F9.6 acceptable 

Bit 
4 

TCH/F4.8 not acceptable 

1 TCH/F4.8 acceptable 

Acceptable channel codings (octet 6e), networl< to MS direction: 
Bits 4 to 7 are spare and shall be set to "0". 



Maximum number of traffic channels (octet 6e), MS to network direction: 
In GSM only. 



Bits 
321 

000 
001 
01 
01 1 
1 00 
1 01 
1 1 

1 1 1 



1 TCH 
2TGH 

3 TCH 

4 TCH 

5 TCH 

6 TCH 

7 TCH 

8 TCH 



Maximum number of traffic channels (octet 6e), networl< to MS direction: 
Bits 1 to 3 are spare and shall be set to "0". 
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Table 10.5.1 14/TS 24.008: Bearer capability information element 



UIMI, User initiated modification indication (octet 6f), 
In GSIVI only. 



765 

000 

00 1 

01 
01 1 
1 00 



User initiated modification not allowed/required/applicable 
User initiated modification up to 1 TCH/F allowed/may be requested 
User initiated modification up to 2 TCH/F allowed/may be requested 
User initiated modification up to 3 TCH/F allowed/may be requested 
User initiated modification up to 4 TCH/F allowed/may be requested 



All other values shall be interpreted as "User initiated modification up to 4 TCH/F may be requested" 

User initiated modification indication is not applicable for transparent connection. 

Wanted air interface user rate (octet 6f), MS to network direction: 

Bits 

4321 

OAir interface user rate not applicable/No meaning associated with this value 

1 9.6 kbit/s 

1 014.4 kbit/s 

00 1 119.2 kbit/s 

10 1 28.8 kbit/s 

110 38.4 kbit/s 

1 1 1 43.2 kbit/s 

1 057.6 kbit/s 

10 1 interpreted by the network as 38.4 kbit/s in this version of the protocol 
1 1 interpreted by the network as 38.4 kbit/s in this version of the protocol 
10 11 interpreted by the network as 38.4 kbit/s in this version of the protocol 
1 1 interpreted by the network as 38.4 kbit/s in this version of the protocol 

All other values are reserved. 

Wanted air interface user rate (octet 6f), network to MS direction: 
Bits 1 to 4 are spare and shall be set to "0". 
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Table 10.5.1 15/TS 24.008: Bearer capability information element 



Layer 2 identity (octet 7) 

Bits 

76 

1 octet identifier 

All otiier values are reserved 

User information layer 2 protocol (octet 7) 

Bits 
54321 

110 recommendation X.25, link level 

10 ISO 6429, codeset (DC1/DC3) 

10 1 reserved: was allocated but never used in earlier phases of the protocol 

10 10 videotex profile 1 

110 COPnoFICt (Character oriented Protocol with no Flow Control 

mechanism) 

110 1 X.75 layer 2 modified (CAPI) 

All other values are reserved. 



Table 10.5.1 15a/TS 24.008: Bearer capability information element 



Acceptable Channel Codings extended (octet 6g) mobile station to network direction: 
In GSIVI only. 

Bit 
7 

TCH/F28.8 not acceptable 

1 TCH/F28.8 acceptable 

Bit 
6 

TCH/F32.0 not acceptable 

1 TCH/F32.0 acceptable 

Bit 
5 

TCH/F43.2 not acceptable 

1 TCH/F43.2 acceptable 

Channel Coding Asymmetry Indication 

Bits 
43 

Channel coding symmetry preferred 

1 Downlink biased channel coding asymmetry is preferred 

1 Uplink biased channel coding asymmetry is preferred 

1 1 Unused, if received it shall be interpreted as "Channel coding symmetry preferred" 



EDGE Channel Codings (octet 6g), network to MS direction: 
In GSM only. 

Bits 3 to 7 are spare and shall be set to "0". 

Bits 2 and 1 are spare. 



10.5.4.5.1 



Static conditions for the bearer capability IE contents 



For GSM, if the information transfer capability field (octet 3) indicates "speech", octets 4, 5, 5a, 5b, 6, 6a, 6b, 6c, 6d, 
6e, 6f, 6g and 7 shall not be included. 
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If the information transfer capability field (octet 3) indicates "speech", octet 3a etc. shall be included only if the mobile 
station supports at least one speech version other than: 

GSM full rate speech version 1 ; or 

GSM half rate speech version 1 . 

If the information transfer capability field (octet 3) indicates a value different from "speech", octets 4, 5, 6, 6a, 6b, and 
6c shall be included, octets 6d, 6e, 6f and 6g are optional. In the network to MS direction in case octet 6d is included, 
octets 6e, 6f and 6g may be included. In the MS to network direction in case octet 6d is included octet 6e shall also be 
included and 6f and 6g may be included. 

If the information transfer capability field (octet 3) indicates "facsimile group 3", the modem type field (octet 6c) shall 
indicate "none". 

If the information transfer capability field (octet 3) indicates "other ITC" or the rate adaption field (octet 5) indicates 
"other rate adaption", octet 5a shall be included. 

If the rate adaption field (octet 5) indicates "other rate adaption" and the other rate adaption field (octet 5a) indicates 
"V.120" or "H.223 and H.245" or "PIAFS", octet 5b shall be included. 

The modem type field (octet 6c) shall not indicate "autobauding type 1" unless the connection element field (octet 6c) 
indicates "non transparent". 

1 0.5.4.5a Call Control Capabilities 



The purpose of the Call Control Capabilities information element is to identify the call control capabilities of the mobile 
station. 

The Call Control Capabilities information element is coded as shown in figure 10.5.89/TS 24.008 and table 10.5.1 16/TS 
24.008. 

The Call Control Capabilities is a type 4 information element with a length of 3 octets. 

87654321 



Call Control Capabilities lEI 



Length of Call Control Capabilities contents 











spare 



PCP 



DTMF 



octet 1 
octet 2 
octet 3 



Figure 10.5.89/TS 24.008 Call Control Capabilities information element 
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Table 10.5.1 16/TS 24.008: Call Control Capabilities 



DTMF (octet 3, bit 1) 

This value is reserved for earlier versions of 
the protocol. 

1 This value indicates that the mobile station 
supports DTMF as specified in section 5.5.7 of 
this specification. 

PCP (octet 3, bit 2) 

This value indicates that the mobile station 
does not support the Prolonged Clearing Procedure 

1 This value indicates that the mobile station 
supports the Prolonged Clearing Procedure. 



10.5.4.6 Call state 

The purpose of the call state information element is to describe the current status of a call, (see section 5.1). 
The call state information element is coded as shown in figure 10.5.90/TS 24.008 and table 10.5.117/TS 24.008. 
The call state is a type 3 information element with 2 octets length. 
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Figure 10.5.90/TS 24.008 Call state information element 
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Table 10.5.1 17/TS 24.008: Call state information element 
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N6 - call present 











1 


1 


1 


U7 - call received 


N7 - call received 








1 











U8 - connect request 


N8 - connect request 








1 








1 


U9 - mobile terminating 
call confirmed 


N9 - mobile termina- 
ting call confirmed 








1 





1 





UIO- active 


NlO- active 








1 





1 


1 


Ull- disconnect request 










1 


1 








U12- disconnect indication Nl2-disconnect | 
















indication 





1 








1 


1 


U19- release request 


N19- release request 





1 


1 





1 





U26- mobile originating 
modify 


N26- mobile origina- 
ting modify 





1 


1 





1 


1 


U27- mobile terminating 
modify 


N27- mobile termina- 
ting modify 





1 


1 


1 










N28- connect indication 



1 0.5.4.7 Called party BCD number 

The purpose of the called party BCD number information element is to identify the called party. 

The called party BCD number information element is coded as shown in figure 10.5.91/TS 24.008 and 
table 1 0.5. 118/TS 24.008. 

The called party BCD number is a type 4 information element with a minimum length of 3 octets and a maximum 
length of 43 octets. For PCS 1900 the maximum length is 19 octets. 
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8 7 6 5 4 3 


2 1 


Called party BCD number 


lEI 


Length of called party BCD number 


contents 



1 

ext 



type of 
number 



Numbering plan 
identification 



Number digit 2 

Number digit 4 
2) 



Number digit 1 

Number digit 3 



octet 1 
octet 2 
octet 3 
octet 4* 
octet 5* 



Figure 10.5.91/TS 24.008 Called party BCD number information element 

NOTE 1: The number digit(s) in octet 4 precedes the digit(s) in octet 5 etc. The number digit which would be 
entered first is located in octet 4, bits 1 to 4. 

NOTE 2: If the called party BCD number contains an odd number of digits, bits 5 to 8 of the last octet shall be 
filled with an end mark coded as "1111". 

Since the information element must contain the complete called party BCD number there is no need for an additional 
complete indication. 

Table 10.5.1 18/TS 24.008: Called party BCD number 



+ 













Type of 


number (octet 3) (Note 1) 






Bits 








7 


6 


5 

















unknown (Note 2) 












1 


international number (Note 3, 


Note 


5) 





1 





national number (Note 3) 









1 


1 


network specific number (Note 


4) 




1 








dedicated access, short code 






1 





1 


reserved 






1 


1 





reserved 






1 


1 


1 


reserved for extension 







NOTE 1: For the definition of "number" see CCITT Recommendation 1.330 and TS 23.003. 

NOTE 2: The type of number "unknown" is used when the user or the network has no knowledge of the type of 

number, e.g. international number, national number, etc. In this case the number digits field is organized 
according to the network dialling plan, e.g. prefix or escape digits might be present. 

NOTE 3: Prefix or escape digits shall not be included. 

NOTE 4: The type of number "network specific number" is used to indicate administration/service number specific 
to the serving network, e.g. used to access an operator. 

NOTE 5: The international format shall be accepted by the MSC when the call is destined to a destination in the 
same country as the MSC. 
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Table 10.5.1 18/TS 24.008: Called party BCD number (continued) 



Numbering plan identification (octet 3) 



Numb 
001, 
Bits 
4 3 



er plan (applies for type of number = 000, 

010 and 100) 



2 1 



1 



1 1 



unknown 

ISDN/telephony numbering plan 

(Rec. E.164/E.163) 

data numbering plan (Recommendation X.121) 

telex numbering plan (Recommendation F.69) 

national numbering plan 

private numbering plan 

reserved for CTS (see GSM 04.56) 

reserved for extension 



All other values are reserved. 






1 








1 











1 








1 


1 





1 


1 


1 


1 


1 


1 



When an MS is the recipient of number information from the network, any incompatibility between the 
number digits and the number plan identification shall be ignored and a STATUS message shall not be 
sent to the network. 

In the case of numbering plan "unknown", the number digits field is organized according to the network 
dialling plan; e.g. prefix or escape digits might be present. 

Table 10.5.1 18/TS 24.008: Called party BCD number (continued) 

























Number digi 


ts 


(octets 4, etc. ) 




Bits 








Number digit value 




4 


3 


2 


1 


or 








8 


7 


6 


5 








































1 






1 










1 









2 










1 


1 






3 







1 












4 







1 





1 






5 







1 


1 









6 







1 


1 


1 






7 




1 















8 




1 








1 






9 




1 





1 









•k 




1 





1 


1 






# 




1 


1 












a 




1 


1 





1 






b 




1 


1 


1 









c 




1 


1 


1 


1 






used as an endmark in the 


case of an odd 












number of number digits 





1 0.5.4.8 Called party subaddress 

The purpose of the Called party subaddress is to identify the subaddress of the called party of a call. For the definition 
of a subaddress see Rec. CCITT 1.330. 

The Called party subaddress information element is coded as shown in figure 10.5.92/TS 24.008 and Table 10.5.1 19/TS 
24.008 

The called party subaddress is a type 4 information element with a minimum length of 2 octets and a maximum length 
of 23 octets. 
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8 7 6 5 


4 3 


2 1 


Called party 


Subaddress 


lEI 


Length of called party 


subaddress 


contents 



1 
ext 


type of 
subaddress 


odd/ev 

Indica 



spare 




Subaddress 


information 



octet 1 
octet 2 

octet 3^ 

octet 4^ 
etc . 



Figure 10.5.92/TS 24.008 Called party subaddress 
Table 10.5.1 19/TS 24.008: Called party subaddress 



Type of subaddress (octet 3) 

Bits 

7 6 5 

NSAP (X.213/ISO 8348 AD2 ) 

10 User specified 

All other values are reserved 

Odd/even Indicator (octet 3) 

Bit 

4 

even number of address signals 

1 odd number of address signals 

NOTE: The odd/even indicator is used when the type of 
subaddress is "user specified" and the coding is BCD. 

Subaddress information (octet 4, etc..) 
The NSAP X. 213/IS0834 8AD2 address shall be formatted 
as specified by octet 4 which contains the Authority 
and Format Identifier (AFI) . The encoding is made ac- 
cording to the "preferred binary encoding" as defined 
in X.213/IS08348AD2. For the definition of this type 
of subaddress, see Rec. CCITT 1.334. 



A coding example is given in ANNEX A. 

For User-specific subaddress, this field is encoded 
according to the user specification, subject to a 
maximum length of 20 octets. When interworking with 
X.25 networks BCD coding should be applied. 

NOTE: It is recommended that users apply NSAP subad- 
dress type since this subaddress type allows the use 
of decimal, binary and IA5 characters in a standar- 
dised manner. 



10.5.4.9 Calling party BCD number 

The purpose of the calling party BCD number information element is to identify the origin of a call. 

The calling party BCD number information element is coded as shown in figure 10.5.93/TS 24.008 and 
table 10.5. 120/TS 24.008. 

The calling party BCD number is a type 4 information element. In the network to mobile station direction it has a 
minimum length of 3 octets and a maximum length of 14 octets. (This information element is not used in the mobile 
station to network direction.) 
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7 6 5 4 3 2 

Calling party BCD number lEI 



Length of calling party BCD number contents 



0/1 
ext 


type of 
number 


Numbering plan 
identification 


1 
ext 


presentat . 
indicator 






spare 


screening 
indicator 



Number digit 2 


Number digit 1 


Number digit 4 Number digit 3 



octet 1 
octet 2 
octet 3 
octet 3a'' 
octet 4* 
octet 5* 



Figure 10.5.93/TS 24.008 Calling party BCD number information element 

The contents of octets 3, 4, etc. are coded as shown in table 10.5. 1 18. The coding of octet 3a is defined in 
table 10.5.120 below. 

If the calling party BCD number contains an odd number of digits, bits 5 to 8 of the last octet shall be filled with an end 
mark coded as "1111". 

Table 1 0.5.1 20/TS 24.008: Calling party BCD number 



Presentation indicator (octet 3a) 
Bits 

7 6 

Presentation allowed 

1 Presentation restricted 

1 Number not available due to interworking 
1 1 Reserved 



If octet 3a is omitted the value "OC 
allowed" is assumed. 

Screening indicator (octet 3a) 

Bits 

2 1 

User-provided, not screened 

1 User-provided, verified and passed 

1 User-provided, verified and failed 
1 1 Network provided 



Presentation 



If octet 3a is omitted the value "( 
not screened" is assumed. 



User provided. 



1 0.5.4.1 Calling party subaddress 

The purpose of the Calling party subaddress is to identify a subaddress associated with the origin of a call. For the 
definition of a subaddress see Rec. CCITT 1.330. 

The Calling party subaddress information element is coded as shown in figure 10.5.94/TS 24.008 and table 10.5.121/TS 
24.008 

The calling party subaddress is a type 4 information element with a minimum length of 2 octets and a maximum length 
of 23 octets. 
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Calling 


party 


Sub 


address 


lEI 




Length 


of 


calling 


party 


sub 


address 


cont 


ents 



1 

ext 



type of 
subaddress 



odd/ev 

Indica 



Subaddress information 



octet 1 
octet 2 

octet 3^ 

octet 4^ 
etc . 



Figure 10.5.94/TS 24.008 Calling party subaddress 



Table 10.5.121/TS 24.008: Calling party subaddress 



Type of subaddress (octet 3) 

Bits 

7 6 5 

NSAP (X.213/ISO 8348 AD2 ) 

10 User specified 

All other values are reserved 

Odd/even indicator (octet 3) 

Bit 

4 

even number of address signals 

1 odd number of address signals 

The odd/even indicator is used when the type of 
subaddress is "user specified" and the coding is BCD 

Subaddress information (octet 4, etc..) 
The NSAP X. 213/IS0834 8AD2 address shall be formatted 
as specified by octet 4 which contains the Authority 
and Format Identifier (AFI) . The encoding is made ac- 
cording to the "preferred binary encoding" as defined 
in X.213/IS08348AD2. For the definition of this type 
of this type of subaddress, see Rec. CCITT 1.332. 



A coding example is given in ANNEX A. 

For User-specific subaddress, this field is encoded 
according to the user specification, subject to a 
maximum length of 20 octets. When interworking with 
X.25 networks BCD coding should be applied. 

NOTE: It is recommended that users apply NSAP subad- 
dress type since this subaddress type allows the use 
of decimal, binary and IA5 characters in a standar- 
dised manner. 



10.5.4.11 Cause 

The purpose of the cause information element is to describe the reason for generating certain messages, to provide 
diagnostic information in the event of procedural errors and to indicate the location of the cause originator. 

The cause information element is coded as shown in figure 10.5.95/TS 24.008 and tables 10.5.122 and 10.5.123/TS 
24.008. 

The cause is a type 4 information element with a minimum length of 4 octets and a maximum length of 32 octets. 

The cause information element may be repeated in a message. 
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Cause lEI 


Length of cause 


contents 


0/1 coding 
ext standard 



spare 


location 



1 

ext 

1 
ext 



recommendation 
cause value 




octet 1 

octet 2 

octet 3 
octet 3a* 

octet 4 

octet 5* 

octet N* 



Figure 10.5.95/TS 24.008 Cause information element 

If the default value applies for the recommendation field, octet 3a shall be omitted. 
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Table 1 0.5.1 22/TS 24.008: Cause information element 



Coding standard (octet 3) 

Bits 

7 6 

Coding as specified in CCITT Rec. Q.931 

1 Reserved for other international standards 

1 National standard 

1 1 Standard defined for the GSMBPLMNS as described 
below and in table 10 . 8 6/GSMfi)24 . 008 

Coding standards other than "1 1 - Standard defined for 
the GSMBPLMNS" shall not be used if the cause can be 

represented with the GSMBstandardized coding. 

The mobile station or network need not support any other 

coding standard than "1 1 - Standard defined for the GSMB 

PLMNS". 

If a cause IE indicating a coding standard not supported by 

the receiver is received, cause "interworking, unspecified" 

shall be assumed. 

Location (octet 3) 

Bits 

4 3 2 



1 

1 

1 
1 
1 1 
1 



user 

private network serving the local user 

public network serving the local user 

transit network 

public network serving the remote user 

private network serving the remote user 

international network 

network beyond interworking point 



All other values are reserved. 

Recommendation (octet 3a) 

Octet 3a shall not be included if the coding standard is 

coded as "1 1 - Standard defined for GSMBPLMNS". 



If the coding standard is different from "1 1 - Standard 
defined for GSMBPLMNS", the coding of octet 3a, if included, 

and octets 4 to N is according to that coding standard. 



Table 10.5.1 22/TS 24.008: Cause information element (continued) 



Cause value (octet 4) 

The cause value is divided in two fields: a class (bits 5 
through 7) and a value within the class (bits 1 through 4) . 

The class indicates the general nature of the event. 

normal event 

normal event 

resource unavailable 

service or option not available 

service or option not implemented 

invalid message (e.g. parameter out of range) 

protocol error (e.g. unknown message) 

interworking 

The cause values are listed in Table 10 . 8 6/GSMfi)24 . 008 below 
and defined in Annex H. 

Diagnostic (s) (octet 5) 

Diagnostic information is not available for every cause, see 
Table 10 . 86/GSMB24 . 008 below. 

When available, the diagnostic (s) is coded in the same way 
as the corresponding information element in section 10. 

The inclusion of diagnostic ( s ) is optional. 

Table 1 0.5.1 23/TS 24.008: Cause information element values 



Class 


000) 


Class 


001) 


Class 


010) 


Class 


oil) 


Class 


100) 


Class 


101) 


Class 


110) 


Class 


111) 
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Cau£ 


36 value 


Cause 


Cause 


Diag- 


Remarks 


Class 


Value 




num. 




nostic 




7 6 5 


4 3 


2 


1 



















1 


1. 


Unassigned (unallocated) 
number 


Note 9 










1 


1 


3. 


No route to destination 


Note 9 







1 


1 





6. 


Channel unacceptable 


- 







1 








8. 


Operator determined barring 


- 




1 











16. 


Normal call clearing 


Note 9 




1 








1 


17. 


User busy 


Note 1 




1 





1 





18. 


No user responding 


- 




1 





1 


1 


19. 


User alerting, no answer 


- 




1 


1 





1 


21. 


Call rejected 


Note 9 - user 
supplied diag- 
nostic (note 4) 


1 


1 


1 





22. 


Number changed 


New destination 
(note 5) 


1 


1 


1 





26. 


Non selected user clearing 


- 




1 


1 


1 


1 


27. 


Destination out of order 


- 




1 


1 1 








28. 


Invalid number format (in- 
complete number) 


— 




1 


1 1 





1 


29. 


Facility rejected 


Note 1 




1 


1 1 


1 





30. 


Response to STATUS ENQUIRY 


- 




1 


1 1 


1 


1 


31. 


Normal, unspecified 


- 




10 





1 





34. 


No circuit/channel available 


Note 1 




10 


1 


1 





38. 


Network out of order 


- 




10 


1 





1 


41. 


Temporary failure 


- 




10 


1 


1 





42. 


Switching equipment conges- 
tion 


— 




10 


1 


1 


1 


43. 


Access information discarded 


Discarded info- 
mation element 
identifiers 
(note 6) 


10 


1 1 








44. 


requested circuit/channel 
not available 


— 




10 


1 1 


1 


1 


47. 


Resources unavailable, un- 
specified 


— 




oil 








1 


49. 


Quality of service 
unavailable 


Note 9 




1 1 





1 





50. 


Requested facility not sub- 
scribed 


Note 1 




oil 


1 


1 


1 


55. 


Incoming calls barred with- 
in the CUG 


Note 1 




1 1 


1 





1 


57. 


Bearer capability not au- 
thorized 


Note 3 




1 1 


1 


1 





58. 


Bearer capability not pre- 
sently available 


Note 3 




1 1 


1 1 


1 


1 


63. 


Service or option not 
available, unspecified 


~ 




10 








1 


65. 


Bearer service not 

implemented 


Note 3 





(continued...) 
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Table 10.5.123/TS 24.008 (concluded): Cause information element values 



Caus€ 


5 value 


Cause 


Cause 


Diag- 


Remarks 


Class 


Value 




number 




nostic 




7 6 5 


4 3 


2 


1 










10 


1 








68. 


ACM equal to or greater 
than ACMmax 






10 


1 





1 


69. 


Requested facility not 
implemented 


Note 1 




10 


1 


1 





70. 


Only restricted digital 
information bearer 
capability is available 






10 


1 1 


1 


1 


79. 


Service or option not 
implemented, unspecified 


~ 




10 1 








1 


81. 


Invalid transaction iden- 
tifier value 






1 1 


1 


1 


1 


87. 


User not member of CUG 


Note 1 




10 1 


1 








88. 


Incompatible destination 


Incompatible 
parameter 
(Note 2) 


1 1 


1 


1 


1 


91. 


Invalid transit network se- 
lection 


~ 




10 1 


1 1 


1 


1 


95. 


Semantically incorrect 
message 


: 




110 











96. 


Invalid mandatory informa- 
tion 


Information 
element 
identifier (s) 


110 








1 


97. 


Message type non-existent 
or not implemented 


Message type 


110 





1 





98. 


Message type not compatible 
with protocol state 


Message type 


110 





1 


1 


99. 


Information element non-ex- 
istent or not implemented 


Information 
element 
identifier (s) 
(notes 6,7) 


110 


1 








100. 


Conditional IE error 


Information 
element 
identifier (s) 
(note 6) 


110 


1 





1 


101. 


Message not compatible with 
protocol state 


Message type 


110 


1 


1 





102. 


Recovery on timer expiry 


Timer number 
(note 8) 


110 


1 1 


1 


1 


111. 


Protocol error, unspecified 


- 




111 


1 1 


1 


1 


127. 


Interworking, unspecified 


- 





All other values in the range to 31 shall be treated as cause 31. 

All other values in the range 32 to 47 shall be treated as cause 47. 

All other values in the range 48 to 63 shall be treated as cause 63. 

All other values in the range 64 to 79 shall be treated as cause 79. 

All other values in the range 80 to 95 shall be treated as cause 95. 

All other values in the range 96 to 111 shall be treated as cause 111. 

All other values in the range 1 12 to 127 shall be treated as cause 127. 

NOTE 1: Diagnostics for supplementary services are handled as follows: 

octet 5, bit 8: 

This is an extension bit as defined in the preliminary part of section 10.5. In this version of this protocol, 
this bit shall be set to 1 . If it is set to zero, the contents of the following octets shall be ignored. 

octet 5, bit 7-1: 

0000001 - Outgoing calls barred within CUG 

0000010 - No CUG selected 
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000001 1 - Unknown CUG index 

0000100 - CUG index incompatible with requested basic service 

0000101 - CUG call failure, unspecified 
0000110 - CUR not subscribed 
0000111 -CCBS possible 

0001000 - CCBS not possible 

All other values shall be ignored. 

NOTE 2: The incompatible parameter is composed of the incompatible information element identifier. 

NOTE 3: The format of the diagnostic field for cause numbers 57, 58 and 65 is as shown in figure 10.5.88/TS 
24.008 and tables 10.5.102/TS 24.008 to 10.5.115/TS 24.008. 

NOTE 4: The user supplied diagnostics field is encoded according to the user specification, subject to the 

maximum length of the cause information element. The coding of user supplied diagnostics should be 
made in such a way that it does not conflict with the coding described in note 9 below. 

NOTE 5: The new destination is formatted as the called party BCD number information element, including 
information element identifier. 

NOTE 6: Locking and non-locking shift procedures described in sections 10.5.4.2 and 3 are applied. In principle, 
information element identifiers are ordered in the same order as the information elements in the received 

message. 

NOTE 7: When only the locking shift information element is included and no information element identifier 
follows, it means that the codeset in the locking shift itself is not implemented. 

NOTE 8: The timer number is coded in 1A5 characters, e.g., T308 is coded as "3" "0" "8". The following coding is 
used in each octet: 

bit 8 : spare "0" 

bits 7-1 : 1A5 character 

Octet 5 carries "3", octet 5a carries "0", etc. 

NOTE 9: The following coding is used for octet 5: 

bit 8 : 1 

bits 7-3 : 00000 

bits 2-1 : condition as follows: 

00 - unknown 

01 - permanent 
10 - transient 

10.5.4.11a CLIR suppression 

The CLIR suppression information element may be sent by the mobile station to the network in the SETUP message. 
The use is defined in TS 24.081. 

The CLIR suppression information element is coded as shown in figure 10.5.96/TS 24.008. 

The CLIR suppression is a type 2 information element. 
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6 5 4 3 2 

CLIR suppression lEI 



octet 1 



Figure 10.5.96/TS 24.008 CLIR suppression information element 

10.5.4.11b CLIR invocation 

The CLIR invocation information element may be sent by the mobile station to the network in the SETUP message. The 
use is defined in TS 24.081. 

The CLIR invocation information element is coded as shown in figure 10.5.97/TS 24.008. 

The CLIR invocation is a type 2 information element. 

87654321 



CLIR invocation lEI 



octet 1 



Figure 10.5.97/TS 24.008 CLIR invocation information element 

10.5.4.12 Congestion level 

The purpose of the congestion level information element is to describe the congestion status of the call. 

The congestion level information element is coded as shown in figure 10.5.98/TS 24.008 and table 10.5.124/TS 24.008. 

The congestion level is a type 1 information element. 

87654321 



Congestion ievei 
lEI 



octet 1 



Figure 10.5.98/TS 24.008 Congestion level information element 



Table 10.5.124/TS 24.008: Congestion level information element 



Congestion ievei (octet i) 

bits 

4 3 2 1 

receiver ready 

1111 receiver not ready 

All other values are reserved. 



10.5.4.13 Connected number 

The purpose of the connected number information element is to identify the connected party of a call. 

The connected number information element is coded as shown in figure 10.5.99/TS 24.008 

The connected number is a type 4 information element with a minimum length of 3 octets and a maximum length of 14 
octets. 
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8 


7 6 5 


4 3 2 1 




Connected number lEI 


Length of connected number contents 


0/1 
ext 


Type of number 


Number plan 
identification 



1 

ext 



Presentation 
indicator I 



Spare 



Screening 
indicator 



Number digit 2 
Number digit 4 
note 2) 



Number digit 1 
Number digit 3 



octet 1 
octet 2 

octet 3 

note 1) 

octet 3a* 

note 1) 

octet 4* 
note 1) 

octet 5* 
note 1) 



Figure 10.5.99/TS 24.008 

The contents of octets 3,4,5, etc. ... are coded as shown in table 10.5.118/TS 24.008. The coding of octet 3a is defined in 
table 10.5.120/TS 24.008. 

If the connected number contains an odd number of digits, bits 5 to 8 of the last octet shall be filled with the end mark 
coded as "1111". 

10.5.4.14 Connected subaddress 

The purpose of the connected subaddress information element is to identify a subaddress associated with the connected 
party of a call. 

The connected subaddress information element is coded as shown in figure 10.5.100/TS 24.008 

The connected subaddress is a type 4 information element with a minimum length of 2 octets and a maximum length of 
23 octets. 



7 



1 



6 5 4 3 2 

I Connected subaddress lEI 
Length of connected subaddress contents 



1 
ext 



Type of 
subaddress 



odd/even 

indicator 



Spare 



Subaddress information 



octet 


1 


octet 


2 


octet 


3* 


octet 


4* 


etc. 





Figure 10.5.100/TS 24.008 

The coding for Type of subaddress, odd/even indicator, and subaddress information is in table 10.5.1 19/TS 24.008. 

10.5.4.15 Facility 

The purpose of the facility information element is to transport supplementary service related information. Within the 
scope of TS 24.008 the content of the Facility information field is an array of octets. The usage of this transportation 
mechanism is defined in TS 24.080. 

The facility information element is coded as shown in figure 10.5.101/TS 24.008 

The facility is a type 4 information element with a minimum length of 2 octets. No upper length limit is specified except 
for that given by the maximum number of octets in a L3 message (see GSM 04.06). 
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7 6 5 4 3 2 

I Facility lEI 

Length of facility contents 
Facility information (see GSMfi)04.80; 



octet 1 
octet 2 
octet 3-?* 



Figure 10.5.101/TS 24.008 

1 0.5.4.1 6 High layer compatibility 

The purpose of the high layer compatibiHty information element is to provide a means which should be used by the 
remote user for compatibility checking. See annex B. 

The high layer compatibility information element is coded as shown in figure 10.5.102/TS 24.008 and 
table 10.5. 125/TS 24.008. 

The high layer compatibility is a type 4 information element with a minimum length of 2 octets and a maximum length 
of 5 octets. 

NOTE: The high layer compatibility information element is transported transparently by a PLMN between a call 
originating entity (e.g. a calling user) and the addressed entity (e.g. a remote user or a high layer function 
network node addressed by the call originating entity). However, if explicitly requested by the user (at 
subscription time), a network which provides some capabilities to realize teleservices may interpret this 
information to provide a particular service. 



5 7 6 5 4 3 2 1 

I High layer compatibility lEI 

Length of high layer compatibility contents 



1 
ext 



coding 
standard 



interpretation 



presentat . 
method of 
protocol 

profile 



0/1 
ext 



1 
ext 



High layer characteristics identification 



Extended high layer characteristics 
identification 



octet 1 
octet 2 
octet 3^ 

octet 4^ 



octet 4a* 
(note) 



Figure 10.5.102/TS 24.008 IHigh layer compatibility information element 

If the value part of the IE is empty, the IE indicates "not applicable". 

NOTE: Octet 4a may be present e.g. when octet 4 indicates Maintenance or Management, or audio visual. 
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Table 1 0.5.1 25/TS 24.008: High layer compatibility information element 



Coding standard (octet 3) 
see ITU Recommendation Q.931, 



Interpretation (octet 3) 

see ITU Recommendation Q.931, 



Presentation method of protocol profile (octet 3) 
see ITU Recommendation Q.931. 



High layer characteristics identification (octet 4) 
see ITU Recommendation Q.931. 

Extended high layer characteristics identification 
(octet 4a) 

see ITU Recommendation Q.931. 



10.5.4.16.1 Static conditions for the high layer compatibility IE contents 

Either the value part of the IE is empty, or it contains at least octet 3 and 4. 

10.5.4.17 Keypad facility 

The purpose of the keypad facility information element is to convey IA5 characters, e.g. entered by means of a terminal 
keypad. (Note). 

The keypad facility information element is coded as shown in figure 10.5.103/TS 24.008. 

The keypad facility is a type 3 information element with 2 octets length. 

87654321 



Spare 



Keypad facility lEI 



Keypad information (1A5 character) 



octet 1 

octet 2 



Figure 10.5.103/TS 24.008 Keypad facility information element 

NOTE: In the GSM system this information element is only used to transfer one DTMF digit (0, 1, ... , 9, A, B, C, 
D, *, #) as one IA5 character. 

1 0.5.4.1 8 Low layer compatibility 

The purpose of the low layer compatibility information element is to provide a means which should be used for 
compatibility checking by an addressed entity (e.g., a remote user or an interworking unit or a high layer function 
network node addressed by the calling user). The low layer compatibility information element is transferred 
transparently by a PLMN between the call originating entity (e.g. the calling user) and the addressed entity. 

Except for the information element identifier, the low layer compatibility information element is coded as in ITU 
recommendation Q.93 1 . 

The low layer compatibility is a type 4 information element with a minimum length of 2 octets and a maximum length 
of 18 octets. 
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8 


7 6 5 4 3 2 1 




Low layer compatibility lEI 


Length 


of the low layer compatibility contents 


The following octets are coded 

as described in 

ITU Recommendation Q.931 



octet 1 
octet 2 
octet 3* 



Figure 1 0.5.1 04/TS 24.008 Low layer compatibility information element 

If the value part of the IE is empty, the IE indicates "not applicable". 

10.5.4.19 More data 

The more data information element is sent by the mobile station to the network or to the network to the mobile station 
in a USER INFORMATION message. The presence of the more data information element indicates to the destination 
remote user/mobile station that another USER INFORMATION message will follow containing information belonging 
to the same block. 

The use of the more data information element is not supervised by the network. 

The more data information element is coded as shown in figure 10.5.105/TS 24.008. 

The more data is a type 2 information element. 

87654321 



More data lEI 



octet 1 



Figure 10.5.105/TS 24.008 More data information element 

10.5.4.20 Notification indicator 

The purpose of the notification indicator information element is to indicate information pertaining to a call. 

The notification indicator element is coded as shown in figure 10.5.106/TS 24.008 and table 10.5.126/ TS 24.008. 

The notification indicator is a type 3 information element with 2 octets length. 

87654321 



Notification indicator lEI octet 1 

octet 2 
Notification description 
+ 

Figure 10.5.106/TS 24.008 Notification indicator information element 



1 

ext 
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Table 1 0.5.1 26/TS 24.008: Notification indicator information element 



Notification description (octet 2) 

Bits 

7 6 5 4 3 2 1 

User suspended 

1 User resumed 

10 Bearer change 

All other values are reserved. 



10.5.4.21 Progress indicator 

The purpose of the progress indicator information element is to describe an event which has occurred during the life of 
a call. 

The progress indicator information element is coded as shown in figure 10.5.107/TS 24.008 and table 10.5.127/TS 
24.008. 

The progress indicator is a type 4 information element with a length of 4 octets. 

87654321 



+ - 



Progress indicator lEl 



Length of progress indicator contents 



+ 

1 

ext 


coding 
standard 



spare 


location 


1 
ext 


prog] 


:ess dc 


ascription 



octet 1 

octet 2 

octet 3 
octet 4 



Figure 10.5.107/TS 24.008 Progress indicator information element 
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Table 1 0.5.1 27/TS 24.008: Progress indicator information element 

+ + 

Coding standard (octet 3) 
Bits 
7 6 

Standardized coding, as described in CCITT Rec. 
Q.931 

1 Reserved for other international standards 

1 National standard 
1 1 Standard defined for the GSMBPLMNS as described 

below 

Coding standards other than "1 1 - Standard defined for 
the GSMBPLMNS" shall not be used if the progress 
description can be represented with the GSMBstandardized 
coding. 

The mobile station or network need not support any other 
coding standard than "1 1 - Standard defined for the GSMB 
PLMNS". 

If a progress indicator IE indicating a coding standard 
not supported by the receiver is received, progress 
description "Unspecific" shall be assumed. 

Location (octet 3) 
Bits 



3 2 1 

1 



1 



1 



User 

Private network serving the local user 
Public network serving the local user 
Public network serving the remote user 
Private network serving the remote user 
Network beyond interworking point 



All other values are reserved. 



Note: 



rogress 

its 

6 5 4 



Depending on the location of the users, the local 
public network and remote public network may be 
the same network. 

description (octet 4) 



3 2 1 
1 



1 
1 1 



No. 
1. 



0100000 32, 
10 64, 
All other values 



Call is not end-to-end PLMN/ISDN, 

further call progress information may 

be available in-band 

Destination address in non-PLMN/ISDN 

Origination address in non-PLMN/ISDN 

Call has returned to the PLMN/ISDN 

In-band information or appropriate 

pattern now available 

Call is end-to-end PLMN/ISDN 

Queueing 

Unspecific 



1 0.5.4.21 a Recall type $(CCBS)$ 

The purpose of the recall type information element is to describe the reason for the recall. 

The recall type information element is coded as shown in Figure 10.5.108/TS 24.008 and Table 10.5.128/TS 24.008. 

The recall type is a type 3 information element with 2 octets length. 

6 5 4 3 2 



7 



1 



recall type lEI 



spare 







recall type 



octet 1 



octet 2 



Figure 10.5.108/TS 24.008 Recall type information element 
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Table 1 0.5.1 28/TS 24.008: Recall type information element 



recall type (octet 2, bits 1 to 4) 

Bits 

3 2 1 

- CCBS 

1} 

to }- shall be treated as CCBS (intended for other 
110} similar types of Recall) 
111 - reserved 



10.5.4.21b Redirecting party BCD number 

The purpose of the redirecting party BCD number information element is to identify the redirecting party. 

The redirecting party BCD number information element is coded as shown in Figure 10.88a. 

The redirecting party BCD number is a type 4 information element. In the network to mobile station direction it has a 
minimum length of 3 octets and a maximum length of 19 octets. 



7 



3 



2 



1 





Redirecting party BCD number lEI 


octet 1 


Length of redirect 


Ing party BCD number contents 


octet 2 


0/1 
ext 


type of 
number 


Numbering plan 
identification 


octet 3 
(note 1) 


1 
ext 


presentat . 
indicator 



spare 


Screening 
indicator 


octet 3a* 
(note 1) 


Number digit 2 


Number digit 1 


octet 4* 
(note 1) 


Number digit 4 


Number digit 3 


octet 5* 
(note 1) 






: 








Note 2) 




: 



Figure 10.88a/TS 24.008 
Redirecting party BCD number information element 

Note 1: The contents of octets 3, 4, etc. are coded as shown in Table 10.81. The coding of octet 

3a is defined in Table 10.83. 

Note 2: If the redirecting party BCD number contains an odd number of digits, bits 5 to 8 of the 

last octet shall be filled with an end mark coded as "1111 ". 



10.5.4.21c 



Redirecting party subaddress 



The purpose of the Redirecting party subaddress is to identify a subaddress associated with the redirecting party. For the 
definition of a subaddress see Rec. CCITT 1.330. 

The Redirecting party subaddress information element is coded as shown in Figure 10.88b and Table 10.84. 

The Redirecting party subaddress is a type 4 information element with a minimum length of 2 octets and a maximum 
length of 23 octets. 
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Redirecting party Subaddress lEI 


Length 


of redirecting party subaddress contents 


1 
ext 


type of 
subaddress 


odd/ev 
Indica 





Subaddress information 


: 







octet 1 



octet 2 



octet 3* 



octet 4* 



etc . 



Figure 10.88b/TS 24.008 
Redirecting party subaddress information element 

10.5.4.22 Repeat indicator 

The purpose of the repeat indicator information element is to indicate how the associated repeated information elements 
shall be interpreted, when included in a message. The repeat indicator information element is included immediately 
before the first occurrence of the associated information element which will be repeated in a message. "Mode 1" refers 
to the first occurrence of that information element, "mode 2" refers to the second occurrence of that information element 
in the same message. 

The repeat indicator information element is coded as shown in figure 10.5.109/TS 24.008 and table 10.5.129/TS 24.008. 

The repeat indicator is a type 1 information element. 

87654321 



+ - 



repeat indicator 

lEI 



repeat indication 



octet 1 



Figure 10.5.109/TS 24.008 Repeat indicator information element 



Table 10.5.129/TS 24.008: Repeat indicator information element 



Repeat indication (octet 1) 

Bits 

4 3 2 1 

1 Circular for successive selection 

"mode 1 alternate mode 2" 
11 

reserved: was allocated in earlier phases of the protocol 



1 0.5.4.22a Reverse call setup direction 

This information element may be included in a MODIFY and MODIFY COMPLETE message to indicate that the 
direction of the data call to which the MODIFY message relates is opposite to the call setup direction. 

The reverse call setup direction information element is coded as shown in figure 10.5.110/TS 24.008. 

The reverse call setup direction is a type 2 information element 
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87654321 

+ + 

I reverse call setup direction lEI | octet 1 

+ + 

Figure 1 0.5.11 0/TS 24.008 Reverse call setup direction information element 



1 0.5.4.22b SETUP Container $(CCBS)$ 

This information element contains the contents of a SETUP message (Mobile Station to Network). This means that the 
Call Control protocol discriminator IE, the Transaction Identifier IE and the Setup message type IE are not included. 

The SETUP Container information element is coded as shown in figure 10.5.1 1 1/TS 24.008 

The SETUP Container is a type 4 information. No upper length limit is specified except for that given by the maximum 
number of octets in a L3 message (see GSM 04.06). 



7 



3 



I SETUP Container lEI 
Length of SETUP container contents 
SETUP message 



octet 1 
octet 2 
octet 3-n 



Figure 10.5.11 1/TS 24.008 Octet j (j = 3, 4 ... n) is the unchanged octet j of the SETUP message. 



10.5.4.23 Signal 

The purpose of the signal information element is to allow the network to convey information to a user regarding tones 
and alerting signals (see sections 5.2.2.3.2 and 7.3.3.). 

The signal information element is coded as shown in figure 10.5.112/TS 24.008 and table 10.5.130/TS 24.008. 

The signal is a type 3 information element with 2 octets length. 

87654321 



Signal lEl 



Signal value 



octet 1 



octet 2 



Figure 10.5.112/TS 24.008 Signal information element 



£75/ 



(3G TS 24.008 version 3.2.1 Release 1999) 



335 



ETSI TS 124 008 V3.2.1 (2000-01) 



Table 10.5.130/TS 24.008: Signal information element 



Signal value 


(Oct 


et 


2) 


Bits 
















8 7 


6 


5 


4 


3 


2 


1 





























dial tone on 




















1 




ring back tone on 

















1 







intercept tone on 

















1 


1 




network congestion tone on 














1 










busy tone on 














1 





1 




confirm tone on 














1 


1 







answer tone on 














1 


1 


1 




call waiting tone on 











1 













off-hook warning tone on 





1 


1 


1 


1 


1 


1 




tones off 


1 








1 


1 


1 


1 




alerting off 


All 


other values 


are reserved. 



10.5.4.24 SS Version Indicator 

The purpose of the SS version indicator information element is to aid the decoding of the Facility information element 
as described in TS 24.010. Within the scope of TS 24.008 the contents of the SS Version information field is an array of 
one or more octets. The usage of the SS version information field is defined in TS 24.080. 

The SS version indicator information element is coded as shown in figure 10.5.1 OATS 24.008 

The SS version indicator is a type 4 information element with a minimum length of 2 octets. No upper length limit is 
specified except for that given by the maximum number of octets in a L3 message (see GSM 04.06). 



1 



SS version 


indicator lEI 


Length of SS version 


indicator contents 


SS version information 


(see GSMfi,04.80) 



octet 1 
octet 2 
octet 3* 



Figure 10.5.11 3/TS 24.008 

NOTE: Usually, this information element has only one octet of content. 

10.5.4.25 User-user 

The purpose of the user-user information element is to convey information between the mobile station and the remote 
ISDN user. 

The user-user information element is coded as shown in figure 10.5.114/TS 24.008 and table 10.5.131/TS 24.008. 
There are no restrictions on the content of the user-user information field. 

The user-user is a type 4 information element with a minimum length of 3 octets and a maximum length of either 35 or 

131 octets. In the SETUP message the user-user information element has a maximum size of 35 octets in a 

GSM PLMN. In the USER INFORMATION, ALERTING, CONNECT, DISCONNECT, PROGRESS, RELEASE and 

RELEASE COMPLETE messages the user-user information element has a maximum size of 131 octets in a 

GSM PLMN. 

In other networks than GSM PLMNs the maximum size of the user-user information element is 35 or 131 octets in the 
messages mentioned above. The evolution to a single maximum value is the long term objective; the exact maximum 
value is the subject of further study. 

NOTE; The user-user information element is transported transparently through a GSM PLMN. 
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8 


7 6 


5 4 3 2 


1 






User-user lEI 






Length 


of user-user contents 





User-user protocol discriminator 



User-user information 



octet 1 

octet 2 
octet 3 

octet 4* 



octet N^ 



Figure 1 0.5.11 4/TS 24.008 User-user information element 



Table 10.5.131/TS 24.008: User-user information element 



+ 


— 


-- 


-- 





— 


— 





+ 


User-user 


protocol discriminator (octet 3) 1 








B 


its 








8 


7 


6 


5 


4 


3 


2 


1 




























User specific protocol (Note 1) 























1 


OSI high layer protocols 




















1 





X.244 (Note 2) 




















1 


1 


Reserved for system management 
convergence function 

















1 








IA5 characters (Note 3) 

















1 


1 


1 


Rec.V.120 rate adaption 














1 











Q.931 (1.451) user-network call control 
messages 











1 














Reserved for other network layer or 


throu 


Jh 










layer 3 protocols including Rec.X.25 








1 


1 


1 


1 


1 


1 


(Note 4) 





1 






















throu 


Jh 










National use 





1 








1 


1 


1 


1 







1 





1 














Reserved for other network 


throu 


Jh 










layer or layer 3 protocols 


1 


1 


1 


1 


1 


1 


1 





including Rec.X.25 (Note 4) 


All 


oth 


er 


values 


are reserved 


Note 


1 




The user 


information is structured according to user 










needs . 






Note 


2 


' 


The 


user 


information is structured according to 










^ec.X.244 


which specifies the structure of X.25 call 










user 


data 


• 


Note 


3 




The user 


information consists of IA5 characters. 


Note 


4 




rhese 


va 


lues are reserved to discriminate these 










orotocol 


discriminators from the first octet of a 










)C.25 


pack 


et including general format identifier. 



10.5.4.26 Alerting Pattern $(NIA)$ 

The purpose of the Alerting Pattern information element is to allow the network to convey information related to the 
alert to be used by the MS (see GSM 02.07). 

The Alerting Pattern information element is coded as shown in figure 10.5.1 15/TS 24.008 and table 10.5.132/TS 
24.008. 

The Alerting Pattern IE is a type 4 information element with 3 octet length. 
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7 6 5 4 3 2 

Alerting Pattern lEI 
length of alerting pattern content 



spare 



Alerting Pattern 
value 



octet 1 
octet 2 

octet 3 



Figure 1 0.5.11 5/TS 24.008 Alerting Pattern information element 



Table 1 0.5.1 32/TS 24.008: Alerting Pattern information element 



Alerting Pattern value (octet 3) 

Bits 

4 3 2 1 



alerting pattern 1 
alerting pattern 2 
alerting pattern 3 
























1 








1 








1 











1 





1 





1 


1 








1 


1 


1 


1 












alerting pattern 5 

alerting pattern 6 

alerting pattern 7 

alerting pattern 8 

alerting pattern 9 



all other values are reserved 



Alerting pattern 1, 2 and 3 indicate alerting levels 0, 1 and 2. 
Alerting pattern 5 to 9 indicate alerting categories 1 to 5 

1 0.5.4.27 Allowed actions $(CCBS)$ 



The purpose of the Allowed actions information element is to provide the mobile station with information about further 
allowed procedures. 

The Allowed actions information element is coded as shown in figure 10.5.116/TS 24.008 and table 10.5.133/TS 24.008 

The Allowed actions is a type 4 information element with 3 octets length 

87654321 

+ 

octet 1 





Allowed Actions lEI 




Length of allowed actions contents 


CCBS 
act. 



spare 






octet 2 
octet 3 



Figure 10.5.116/TS 24.008 Allowed actions information element 
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Table 1 0.5.1 33/TS 24.008: Allowed actions information element 



CCBS activation (octet 3) 

Bit 
8 

Activation of CCBS not possible 

1 Activation of CCBS possible 



10.5.5 GPRS mobility management information elements 
10.5.5.1 Attach result 

The purpose of the attach result information element is to specify the resuh of a GPRS attach procedure. 

The attach result is a type 1 information element. 

The attach result information element is coded as shown in figure 10.5.1 17/TS 24.008 and table 10.5.134/TS 24.008. 

87 6 54 321 

octet 1 



Attach result 
lEI 




spare 



Result of 
attach 



Figure 10.5.1 17/TS 24.008: Attach resu/f information element 
Table 10.5.134/TS 24.008: Attach resu/f information element 



Result of attach (octet 1) 

Bits 

3 2 1 

1 GPRS only attached 

Oil Combined GPRS/IMSI attached 

All other values are reserved. 



10.5.5.2 Attach type 

The purpose of the attach type information element is to indicate the type of the requested attach, i.e. whether the MS 
wants to perform a GPRS or combined GPRS attach. 

The attach type is a type 1 information element. 

The attach type information element is coded as shown in figure 10.5.118/TS 24.008 and table 10.5.135/TS 24.008. 

87654321 

octet 1 



Attach type 
lEI 



FOR 



Type of attach 



Figure 10.5.118/TS 24.008: Attach type information element 
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Table 1 0.5.1 35/TS 24.008: Attach type information element 



Type of attach (octet 1, bit 


1 to 3) 


Bits 






3 2 1 






1 


GPRS attach 




10 


GPRS attach while IMSI 


attached 


Oil 


Combined GPRS/IMSI attach 


All other values are interpreted as GPRS 


attach 


in this version of the 


protocol . 


Follow- 


-on request (octet 1, b 


it 4) 


Bit 
4 









No follow-on request 


pending 


1 


Follow-on request 


pending 


Follow- 


-on request pending is 


applicable 


only in UMTS. 





10.5.5.3 Ciphering algorithm 

The purpose of the ciphering algorithm information element is to specify which ciphering algorithm shall be used. 

The ciphering algorithm is a type 1 information element. 

The ciphering algorithm information element is coded as shown in figure 10.5.1 19/TS 24.008 and table 10.5.136/TS 
24.008. 



7 



6 



3 



1 



Ciphering algorithm 
lEI 




spare 



Type of 
algorithm 



octet 1 



Figure 10.5.119/TS 24.008: Ciphering algorithm information element 
Table 10.5.136/TS 24.008: Ciphering algorithm information element 



Type of ciphering algorithm (octet 1) 

Bits 

3 2 1 

ciphering not used 

1 GPRS Encryption Algorithm GEA/1 



All other values are interpreted reserved 
by this version of the protocol. 



10.5.5.4 TMSI status 

The purpose of the TMSI status information element is to indicate whether a valid TMSI is available in the MS or not. 

The TMSI status is a type 1 information element. 

The TMSI status information element is coded as shown in figure 10.5.120/GSM 04.08 and table 10.5.137/GSM 04.08. 

octet 1 



8 


7 6 


5 


4 


3 


2 


1 


TMSI Status 
lEI 



spare 


TMSI 
flag 



Figure 10.5.120/GSM 04.08: TIVISI status information element 
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Table 10.5.137/GSM 04.08: TMSI status information element 



TMSI flag (octet 1) 

Bit 
1 

no valid TMSI available 

1 valid TMSI available 



10.5.5.5 Detach type 

The purpose of the detach type information element is to indicate which type of detach is requested by the MS. In the 
network to MS direction the detach type information element is used to indicate the reason why a detach request is sent. 

The detach type is a type 1 information element. 

The detach type information element is coded as shown in figure 10.5.121/TS 24.008 and table 10.5.138/TS 24.008. 

87 6 54 321 

octet 1 



Detach type 
lEI 



Power 

off 



Type of detach 



Figure 10.5.121/TS 24.008: Detach type information element 



Table 10.5.138/TS 24.008: Detach type information element 



Type of 


detach (octet 1) 




In the 


MS to network 


direction: 




Bits 








3 2 1 








1 


GPRS detach 






10 


TMSI detach 






Oil 


Combined GPRS/IMSI detach 




All oth 


er values are 


interpreted as 




Combine 


d GPRS/IMSI detach by this version 


of the 


protocol . 






In the 


network to MS 


direction: 




Bits 








3 2 1 








1 


re-attach required 




10 


re-attach not required 




Oil 


IMSI detach 


(after VLR fai 


lure) 


All oth 


er values are 


interpreted as 


re- 


attach 


not required by this version 


of 


the protocol. 






Power c 


ff (octet 1) 






In the 


MS to network 


direction: 




Bit 
4 








norma 


1 detach 






1 power 


switched off 






In the 


network to MS 


direction the 


Power 


off bit 


shall be spare and set to zero. 
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10.5.5.6 DRX parameter 

The purpose of the DRX parameter information element is to indicate whether the MS uses DRX mode or not. 

The DRX parameter is a type 3 information element with a length of 3 octets. 

The value part of a DRX parameter information element is coded as shown in table 10.5.139/TS 24.008. 

octet 1 
octet 2 

octet 3 



8 


7 6 5 


4 


3 2 


1 


DRX parameter lEI 


SPLIT PG CYCLE CODE 



spare 


SPLIT 

on 
CCCH 


non-DRX 
timer 



Figure 1 0.5.1 22/TS 24.008: DRX parameter information element 
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Table 1 0.5.1 39/TS 24.008: DRX parameter information element 



SPLIT PG CYCLE CODE, octet 2 

The octet contains the binary coded value of the SPLIT PG CYCLE 
CODE. The SPLIT PG CYCLE value is derived from the SPLIT PG 
CYCLE CODE as follows: 



SPLIT PG CYCLE CODE 


SPLIT PG CYCLE value 





704 (equivalent to no DRX) 


1 to64 


1 to 64, respectively 


65 


71 


66 


72 


67 


74 


68 


75 


69 


77 


70 


79 


71 


80 


72 


83 


73 


86 


74 


88 


75 


90 


76 


92 


77 


96 


78 


101 


79 


103 


80 


107 


81 


112 


82 


116 


83 


118 


84 


128 


85 


141 


86 


144 


87 


150 


88 


160 


89 


171 


90 


176 


91 


192 


92 


214 


93 


224 


94 


235 


95 


256 


96 


288 


97 


320 


98 


352 



All other values are reserved and shall be interpreted as 1 by this version of the protocol. 
SPLIT on CCCH, octet 3 (bit 4) 

Split pg cycle on CCCH is not supported by the mobile station 

1 Split pg cycle on CCCH is supported by the mobile station 

non-DRX timer, octet 3 



bit 






















3 


2 


1 





























no non-DRX mode 


after transfer 


state 










1 


max . 


1 


sec 


non- 


-DRX 


mode 


after 


transfer 


state 





1 





max. 


2 


sec 


non- 


-DRX 


mode 


after 


transfer 


state 





1 


1 


max. 


4 


sec 


non- 


-DRX 


mode 


after 


transfer 


state 


1 








max . 


8 


sec 


non- 


-DRX 


mode 


after 


transfer 


state 


1 





1 


max . 


16 


sec 


non- 


-DRX 


mode 


after 


transfer 


state 


1 


1 





max. 


32 


sec 


non- 


-DRX 


mode 


after 


transfer 


state 


1 


1 


1 


max. 


64 


sec 


non- 


-DRX 


mode 


after 


transfer 


state 



3its 8 to 5 of octet 3 are spare and shall be coded all zeros. 
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1 0.5.5.7 Force to standby 

The purpose of the force to standby information element is to force the MS to stop the READY timer in order to prevent 
the MS to perform cell updates. 

In UMTS, the network shall always indicate /orce to standby not indicated in the force to standby information element. 

The force to standby is a type 1 information element. 

The force to standby information element is coded as shown in figure 10.5.123/TS 24.008 and table 10.5.140/TS 
24.008. 



8 7 6 


5 


4 


3 2 1 


Force to standby 
lEI 



spare 


Force to 
standby value 



octet 1 

Figure 10.5.123/TS 24.008: Force to sfanddy information element 
Table 10.5.140/TS 24.008: Force to sfanc/by information element 



Force 


to standby 


value 


(octet 1) 


Bits 










3 2 1 













Force 


to 


standby 


not indicated 


1 


Force 


to 


standby 


indicated 


All other val 


ues 


are interpreted as 


force 


to standby 


not in 


dicated by this 


version of the p 


rotocol 





10.5.5.8 P-TMSI signature 

The purpose of the P-TMSI signature information element is to identify a GMM context of an MS. 

The P-TMSI signature is a type 3 information element with 4 octets length. 

The P-TMSI signature information element is coded as shown in figure 10.5.124/TS 24.008 and table 10.5.141/TS 
24.008. 

87 6 54 321 

octet 1 
octet 2 

octet 4 
Figure 10.5.124/TS 24.008: P-TMSI signature information element 
Table 10.5.141/TS 24.008: P-TMS/ s/gnafufe information element 



8 


7 


6 5 4 3 


2 


1 


P-TMSI signature lEI 


P-TMSI signature value 



P-TMSI signature value 

Octets 2, 3 and 4 contain the binary 

representation of the P-TMSI signature. 

Bit 1 of octet 4 is the least significant 
bit and bit 8 of octet 2 is the most 
significant bit. 



10.5.5.9 Identity type 2 

The purpose of the identity type 2 information element is to specify which identity is requested. 
The identity type 2 is a type 1 information element. 
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The identity type 2 information element is coded as shown in figure 10.5.125/TS 24.008 and table 10.5.142/TS 24.008. 

octet 1 
Figure 10.5.125/TS 24.008: WenWyfype 2 information element 
Table 10.5.142/TS 24.008: Identity fype 2 information element 



8 7 6 


5 


4 


3 2 1 


Identity type 2 
lEI 



spare 


Type of 
identity 



Type of 


identity 


(octet 1 


Bits 






3 2 1 






1 


IMSI 




10 


IMEI 




Oil 


IMEISV 




10 


TMSI 





All other values are interpreted as 
IMSI by this version of the protocol. 



10.5.5.10 IMEISV request 

The purpose of the IMEISV request information element is to indicate that the IMEISV shall be included by the MS in 
the authentication and ciphering response message. 

The IMEISV request is a type 1 information element. 

The IMEISV request information element is coded as shown in figure 10.5.126/TS 24.008 and table 10.5.143/TS 
24.008. 



8 


7 6 


5 


4 


3 2 1 


IMEISV request 
lEI 



spare 


IMEISV request 
value 



octet 1 

Figure 10.5.126/TS 24.008: /ME/Sl^reqi/esMnformation element 
Table 10.5.143/TS 24.008: /ME/Sl/ requesf information element 



IMEISV 


request value 




(octet 


1) 




Bits 












3 2 1 















IMEISV not requested 






1 


IMEISV requested 








All other values are 


in 


terpreted 


as 


IMEISV 


not requested 


by 


this 


version | 


of the 


protocol . 











1 0.5.5.1 1 Receive N-PDU Numbers list 

The purpose of the Receive N-PDU Numbers list information element is to specify the current SNDCP Receive N-PDU 

Number values. 

The Receive N-PDU Number list is a type 4 information element with a length of 4 to 17 octets. 

The value part of a Receive N-PDU Number list information element is coded as shown in figure 10.5.127/TS 24.008 
and table 10.5.144/TS 24.008. 
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8 


7 6 5 4 3 2 


1 


Receive N-PDU Number list lEI 


Length of Receive N-PDU Number list 
contents 


Receive N-PDU Number-list 



octet 1 
octet 2 

octet 3 
octet 4 
octet n* 
Figure 10.5.127/TS 24.008: Receive N-PDU Number list information element 

Table 1 0.5.1 44/TS 24.008: Receive N-PDU Number iist information element 



Receive N-PDU Number -list value ::= 

{ 

< Receive N-PDU Number -list > 

< Padding bits> 



} 

< Receive N-PDU Number-list > ::= < sapi : bit-string(4) > < Receive N-PDU 
Number-value : bit-string(8) > { < Receive N-PDU Number-list> I < null > } ; 



< nsapi > 


::= 


{0101 }; 


- NSAPI 5 


{0110}; 


- NSAPI 6 


{0111}; 


- NSAPI 7 


{ 1000 }; 


- NSAPI 8 


{ 1001 }; 


- NSAPI 9 


{ 1010}; 


- NSAPI 10 


{1011}; 


- NSAPI 1 1 


{ 1100}; 


- NSAPI 12 


{1101}; 


-NSAPI 13 


{1110}; 


- NSAPI 14 


{1111}; 


- NSAPI 15 



< Receive N-PDU Number-value > ::= { I 1 } (8) ; 

— Contains the binary coded representation of the receive N-PDU Number value. 

— The first bit in transmission order is the most significant bit. 

<Padding bits> ::= null I 0000; 



1 0.5.5.1 2 MS network capability 

The purpose of the MS network capability information element is to provide the network with information concerning 
aspects of the mobile station related to GPRS. The contents might affect the manner in which the network handles the 
operation of the mobile station. The MS network capability information indicates general mobile station characteristics 
and it shall therefore, except for fields explicitly indicated, be independent of the frequency band of the channel it is 
sent on. 

The MS network capability is a type 4 information element with a maximum of 3 octets length. 

The value part of a MS network capabilityinfoiniation element is coded as shown in figure 10.5. 128/TS 24.008 and 
table 10.5. 145/TS 24.008. 
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8 


7 




6 5 


4 3 2 


1 






MS 


network 


capability lEI 




Le 


agth 


of 


MS netwo 


rk capability contents 






MS 


network 


capability value 
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octet 1 

octet 2 

octet 3 
Figure 1 0.5.1 28/TS 24.008 MS network capability information element 

Table 1 0.5.1 45/TS 24.008 MS network capability information element 

<MS network capability value part> ::= 

<GEA bits> 

<SM capabilities via dedicated channels: bit> 

<SM capabilities via GPRS channels: bit> 

<UCS2 support: bit> 
<SS Screening Indicator: bit string(2)> 
<SoLSA Capability : bit> 
<Padding bit>; 

<GEA bits> ::= < GEA/1 :bit>; 

<Spare bits> ::= null I {<spare bit> < Spare bits >}; 

SS Screening Indicator 

defined in TS 24.080 

1 defined in TS 24.080 
10 defined in TS 24.080 

1 1 defined in TS 24.080 

SM capabilities via dedicated channels 

Mobile station does not support mobile terminated point to point SMS via 
dedicated signalling channels 

1 Mobile station supports mobile terminated point to point SMS via dedicated 
signalling channels 

SM capabilities via GPRS channels 

Mobile station does not support mobile terminated point to point SMS via 
GPRS packet data channels 

1 Mobile station supports mobile terminated point to point SMS via GPRS 
packet data channels 

UCS2 support 

This information field indicates the likely treatment by the mobile station of UCS2 encoded character strings. 

the ME has a preference for the default alphabet (defined in GSM 03.38) 
over UCS2. 

1 the ME has no preference between the use of the default alphabet and the 
use of UCS2. 

GPRS Encryption Algorithm GEA/1 

encryption algorithm GEA/lnot available 

1 encryption algorithm GEA/1 available 

SoLSA CapabiUty 

The ME does not support SoLSA. 

1 The ME supports SoLSA. 
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1 0.5.5.1 2a MS Radio Access capability 

The purpose of the MS RA capability information element is to provide the radio part of the network with information 
concerning radio aspects of the mobile station. The contents might affect the manner in which the network handles the 
operation of the mobile station. 

The MS RA capability is a type 4 information element, , with a maximum length of 32 octets. 

The value part of a MS RA capability information element is coded a shown table 10.5. 146/TS 24.008. 

- SEMANTIC RULE : Among the three Access Type Technologies GSM 900-P, GSM 900-E and GSM 900-R 
only one shall be present. 

- The MS shall never indicate more than 4 Access Technology Types. NOTE: e.g. [400, 900, 1800 , UMTS 1 or 
[800, 1900] MHz bands during a single MM procedure.- Error handling : If a received Access Technology 
Type is unknown to the receiver, it shall ignore all the corresponding fields; 

- If within a known Access Technology Type a receiver recognizes an unknown field it shall ignore it. 

- See more details about error handling of MS radio access capability in TS GSM 08.18. 

Due to shared radio frequency channel numbers between 1800 and 1900, the mobile should provide MS Radio 
Access capability for either 900/1800 band(s) OR 1900 band. 

Table 1 0.5.1 46/TS 24.008 : Mobile Station Radio Access Capability Information Element 



< MS Radio Access capability IE > ::= 

<MS Radio Access capability lEI : 00100100 > 

<Length of MS RA capability: <octet» -- length in octets of MS RA capability value part and spare bits 

<MS RA capability value part : < MS RA capability value part struct » 

<spare bits>**; — may be used for future enhancements 

<MS RA capability value part struct >::= —recursive structure allows any number of Access technologies 

< Access Technology Type: bit (4) > 

< Access capabilities : <Access capabilities struct> > 
{Oil <MS RA capability value part struct> } ; 

< Access capabilities struct > ::= 

< Length : bit (7) > — length in bits of Content and spare bits 
<Access capabilities : <Content» 

<spare bits>** ; — expands to the indicated length 
— may be used for future enhancements 

< Content > ::= 

< RF Power Capability : bit (3) > 

{Oil <A5 bits : <A5 bits> > } — zero means that the same values apply for parameters as in the immediately 
preceeding Access capabilities field within this IE 

-- The presence of the A5 bits is mandatory in the 1" Access capabilities struct within this IE. 

< ES IND : bit > 

< PS : bit > 

< VGCS : bit > 

< VBS : bit > 

{ I 1 < Multislot capability : Multislot capability struct > } ; — zero means that the same values for multislot 
parameters as given in an earlier Access capabilities field within this IE apply also here 

{ I 1 < 8PSK Power Capability : bit(2) > } - T also means 8PSK modulation capability in uplink. 
— error: struct too short, assume features do not exist 

— error: struct too long, ignore data and jump to next Access technolgy 
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Table 10.5.146/TS 24.008 (continued): Mobile Station Radio Access Capabiiity Information Element 



< Multislot capability struct > ::= 

{ I 1 < HSCSD multislot class : bit (5) > } 

{ I 1 < GPRS multislot class : bit (5) > < GPRS Extended Dynamic Allocation Capability : bit > } 

{ I 1 < SMS_VALUE : bit (4) > < SM_VALUE : bit (4) > } ; 

{ I 1 < ECSD multislot class : bit (5) > } 
{ I 1 < EGPRS multislot class : bit (5) > < EGPRS Extended Dynamic Allocation Capability : bit > }; 

<A5 bits> ::= < A5/1 : bit> <A5/2 : bit> <A5/3 : bit> <A5/4 : bit> <A5/5 : bit> <A5/6 : bit> <A5/7 : bit>; -- bits for circuit 
mode cipliering algorithms 

Access Technology Type 

Tliis field indicates the access technology type to be associated with the following access capabilities. 

Bits 

4321 

GSM P 

1 GSM E -note that GSM E covers GSM P 

10 GSM R -note that GSM R covers GSM E and GSM P 

00 11 GSM 1800 

100 GSM 1900 

All other values are treated as unknown by the receiver. 

RF Power Capability 

This field is coded as radio capability in Classmark 3 for the indicated band: it contains the binary coding of he power 
class associated (see GSM 05.05 paragraph 4.1 output power and paragraph 4.1 .1 Mobile Station). 

8PSK Power Capability 

This field is coded according to the definition in GSM 05.05. The presence of this field indicates also 8PSK 
modulation capability in uplink. 

A5/1 

encryption algorithm A5/1 not available 

1 encryption algorithm A5/1 available 
A5/2 

encryption algorithm A5/2 not available 

1 encryption algorithm A5/2 available 
A5/3 

encryption algorithm A5/3 not available 

1 encryption algorithm A5/3 available 
A5/4 

encryption algorithm A5/4 not available 

1 encryption algorithm A5/4 available 
A5/5 

encryption algorithm A5/5 not available 

1 encryption algorithm A5/5 available 
A5/6 

encryption algorithm A5/6 not available 

1 encryption algorithm A5/6 available 
A5/7 

encryption algorithm A5/7 not available 

1 encryption algorithm A5/7 available 

ES IND - (Controlled early Classmark Sending) 

"controlled early Classmark Sending" option is not implemented 

1 "controlled early Classmark Sending" option is implemented 

PS - (Pseudo Synchronisation) 

PS capability not present 

1 PS capability present 

VGCS - (Voice Group Call Service) 

no VGCS capability or no notifications wanted 

1 VGCS capability and notifications wanted. 
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Table 10.5.146/TS 24.008 (concluded): Mobile Station Radio Access Capability \niormat\on Element 



VBS - (Voice Broadcast Service) 

no VBS capability or no notifications wanted 

1 VBS capability and notifications wanted 

HSCSD Multi Slot Class 

The Multi Slot Class field is coded as the binary representation of the nnultislot class defined in TS GSM 05.02. 
Range 1 to 18, all other values are reserved. 

GPRS Multi Slot Class 

The GPRS Multi Slot Class field is coded as the binary representation of the multislot class defined in TS GSM 
05.02. 

ECSD Multi Slot Class 

The presence of this field indicates ECSD capability. Whether the MS is capable of 8-PSK modulation in uplink is 
indicated by the presence of 8-PSK Power Capability field. The Multi Slot Class field is coded as the binary 
representation of the multislot class defined in TS GSM 05.02. 
Range 1 to 18, all other values are reserved. 

EGPRS Multi Slot Class 

The presence of this field indicates EGPRS capability. Whether the MS is capable of 8-PSK modulation in uplink is 
indicated by the presence of 8-PSK Power Capability field. The EGPRS Multi Slot Class field is coded as the binary 
representation of the multislot class defined in TS GSM 05.02. 

GPRS Extended Dynamic Allocation Capability 

Extended Dynamic Allocation Capability for GPRS is not implemented 

1 Extended Dynamic Allocation Capability for GPRS is implemented 
EGPRS Extended Dynamic Allocation Capability 

Extended Dynamic Allocation Capability for EGPRS is not implemented 

1 Extended Dynamic Allocation Capability for EGPRS is implemented 

SMS_VALUE (Switch-Measure-Switch) (4 bit field) 

The SMS field indicates the time needed for the mobile station to switch from one radio channel to another, 

perform a neighbor cell power measurement, and the switch from that radio channel to another radio channel. 

Bits 

4321 

1/4 timeslot (~ 144 microseconds) 
1 2/4 timeslot (-288 microseconds) 
10 3/4 timeslot (-433 microseconds) 

1111 16/4 timeslot (-2307 microseconds) 

(SM_VALUE) Switch-Measure (4 bit field) 

The SM field indicates the time needed for the mobile station to switch from one radio channel to another and 

perform a neighbour cell power measurement. 

Bits 

432 1 

1/4 timeslot (- 144 microseconds) 
1 2/4 timeslot (-288 microseconds) 
10 3/4 timeslot (-433 microseconds) 

1111 16/4 timeslot (-2307 microseconds) 



10.5.5.13 Spare 

This is intentionally left spare. 
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10.5.5.14 G MM cause 

The purpose of the GMM cause information element is to indicate the reason why a GMM request from the mobile 
station is rejected by the network. 

The GMM cause information element is coded as shown in figure 10.5.129/TS 24.008 and table 10.5.147/TS 24.008. 

The GMM cause is a type 3 information element with 2 octets length. 

87 6 54 321 

octet 1 



GMM cause lEI 



Cause value 



octet 2 



Figure 10.5.129/TS 24.008: GMM cause information element 
Table 10.5.147/TS 24.008: GMM cause information element 





Cause 


value 


(octet 


2) 








Bits 












8 


7 


6 


5 


4 


3 


2 


1 
























1 





IMSI unknown in HLR 

















1 


1 


Ille 


gal MS 



















1 


1 





Illegal ME 



















1 


1 


1 


GPRS services not allowed 
















1 











GPRS services and non-GPRS services 
not allowed 
















1 








1 


MS identity cannot be derived by the 
network 
















1 





1 





Implicitly detached 
















1 





1 


1 


PLMN not allowed 
















1 


1 








Location Area not allowed 
















1 


1 





1 


Roaming not allowed in this 
location area 













1 


1 


1 


1 


PS MAC failure 













1 


1 


1 


1 


1 


PS Synch failure 













1 














MSC temporarily not reachable 













1 











1 


Network failure 













1 





1 


1 





Congestion 










1 


1 














} 










to 








} retry upon entry into a new cell 










1 


1 


1 


1 


1 


1 


} 







1 





1 


1 


1 


1 


1 


Semantically incorrect message 







1 


1 

















Invalid mandatory information 







1 


1 














1 


Message type non-existent 
or not implemented 







1 


1 











1 





Message type not compatible with 
the protocol state 







1 


1 











1 


1 


Information element non-existent 
or not implemented 







1 


1 








1 








Conditional IE error 







1 


1 








1 





1 


Message not compatible with 
the protocol state 







1 


1 





1 


1 


1 


1 


Protocol error, unspecified 




Any 


other 


value 


received by the mobile station 




shall 


be treated 


as 0110 1111, 'Protocol error, ' 




unspecified 




Any other value received 




by the network s 


hall be treated as 0110 1111, 




'Protocol 


error. 


unspecified' . 




NOTE: 


The 


listed reject cause values are defined in 










Annex 


G 







1 0.5.5.1 5 Routing area identification 

The purpose of the routing area identification information element is to provide an unambiguous identification of 
routing areas within the area covered by the GSM system. 
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The routing area identification is a type 3 information element with 7 octets length. 

The routing area identification information element is coded as shown in figure 10.5.130/TS 24.008 and 
table 10.5. 148/TS 24.008. 



8 


7 6 


5 


4 3 2 


1 




Routing 


Area Identification lEI 






MCC digit 


2 


MCC digit 1 




MNC digit 


3 


MCC digit 3 




MNC digit 


2 


MNC digit 1 


LAC 


LAC conta;d 


RAC 



octet 1 
octet 2 
octet 3 
octet 4 
octet 5 
octet 6 
octet 7 



Figure 10.5.130/TS 24.008: Routing area identification information element 
Table 1 0.5.1 48/TS 24.008: Routing area identification information element 



MCC, Mobile country code (octet 2 and 3) 

The MCC field is coded as in CCITT Rec. E212, Annex A. 

If the RAI is deleted, the MCC and MNC shall take the value from the deleted RAI. 

In abnormal cases, the MCC stored in the mobile station can contain elements not in the set {0, 1 ... 9}. In such 
cases the mobile station should transmit the stored values using full hexadecimal encoding. When receiving such 
an MCC, the network shall treat the RAI as deleted. 

MNC, Mobile network code (octet 4) 

The coding of this field is the responsibility of each 
administration but BCD coding shall be used. If an 
administration decides to include only one digit in the MNC, then bits 5 to 8 of octet 4 are coded as "1 1 1 1 ". 

Note: TS 23.003 defines that a 2 digit MNC shall be used, however the possibility to use a one digit MNC in LAI 
is provided on the radio interface 

In abnormal cases, the MNC stored in the mobile station can have digit 1 not in the set {0, 1 ... 9} and/or digit 2 
not in the set {0, 1 ...9, F} hex. In such cases the mobile station should transmit the stored values using full 
hexadecimal encoding. When receiving such an MNC, the network shall treat the RAI as deleted. 

LAC, Location area code (octet 5 and 6) 

In the LAC field bit 8 of octet 5 is the most significant bit and bit 1 of octet 6 the least significant bit. 

The coding of the location area code is the responsibility of each administration except that two values are used 

to mark the LAC, and hence the RAI, as deleted. Coding using full hexadecimal representation may be used. The 

location area code consists of 2 octets. 

If a RAI has to be deleted then all bits of the location area code shall be set to one with the exception of the least 

significant bit which shall be set to zero. If a SIM is inserted in a Mobile Equipment with the location area code 

containing all zeros, then the Mobile Equipment shall recognise this LAC as part of a deleted RAI. 

RAC, Routing area code (octet 7) 

In the RAC field bit 8 of octet 7 is the most significant. The coding of the routing area code is the responsibility of 

each administration. Coding using full hexadecimal 

representation may be used. The routing area code consists 1 octet. 



£75/ 



(3G TS 24.008 version 3.2.1 Release 1999) 



352 



ETSI TS 124 008 V3.2.1 (2000-01) 



10.5.5.16 Spare 

This is intentionally left spare. 

10.5.5.17 Update result 

The purpose of the update result information element is to specify the result of the associated updating procedure. 

The update result is a type 1 information element. 

The update result information element is coded as shown in figure 10.5.131/TS 24.008 and table 10.5.149/TS 24.008. 

87 6 54 321 

octet 1 



Update result 
lEI 




spare 



Update result 
value 



Figure 10.5.131/TS 24.008: Update result information element 
Table 10.5.149/TS 24.008: Update resu/f information element 



Update result value (octet 


1) 


Bits 
3 2 1 




RA updated 

1 combined RA/LA updated 




All other values are reserved. 





10.5.5.18 Update type 

The purpose of the update type information element is to specify the area the updating procedure is associated with. 

The update type is a type 1 information element. 

The update type information element is coded as shown in figure 10.5.132/TS 24.008 and table 10.5.150/TS 24.008. 

87654321 

octet 1 



Update type 
lEI 



FOR 



Update type 
value 



Figure 10.5.132/TS 24.008: Update type information element 
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Table 1 0.5.1 50/TS 24.008: Update type information element 



Update type value (octet 1, bit 1 to 3) 

Bits 
3 2 1 

RA updating 

1 combined RA/LA updating 

10 combined RA/LA updating with 

IMSI attach 
Oil Periodic updating 

All other values are reserved. 

Follow-on request (octet 1, bit 4) 

Bit 

4 

No follow-on request pending 

1 Follow-on request pending 

Follow-on request pending is applicable 
only in UMTS. 



1 0.5.5.1 9 A&C reference number 

The purpose of the A&C reference number information element is to indicate to the network in the 
AUTHENTICATION AND CIPHERING RESPONSE message which AUTHENTICATION AND CIPHERING 
REQUEST message the MS is replying to. 

The A&C reference number is a type 1 information element. 

The A&C reference number information element is coded as shown in figure 10.5.123ArS 24.008 and table 10.5.140/TS 
24.008. 



8 


7 6 5 


4 3 2 1 


A&C 


reference number 
lEI 


A&C reference number 
value 



octet 1 

Figure 10.5.134/TS 24.008: A&C reference number information element 
Table 1 0.5.1 52/TS 24.008: A&C reference number information element 



A&C reference number value (octet 1) 
Unformatted 4 bit field 



10.5.5.20 Service type 

The purpose of the service type information element is to specify the purpose of the Service request procedure. 

The service type is a type 1 information element. 

The service type information element is coded as shown in figure 10.5.135/TS 24.008 and table 10.5.153/TS 24.008. 

87654321 



Service type 
lEI 




spare 



Service type 



octet 1 



Figure 10.5.135/TS 24.008: Service type information element 
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Table 1 0.5.1 53/TS 24.008: Service type information element 



Service type value (octet 1) 


Bits 
3 2 1 





1 
10 


Signalling 

Data 

Paging Response 


All other values are reserved. 



10.5.6 Session management information elements 



10.5.6.1 



Access Point Name 



The purpose of the access point name information element is to identify the packet data network to which the GPRS 
user wishes to connect and to notify the access point of the packet data network that wishes to connect to the MS. 

The Access Point Name is a label or a full qualified domain name according to DNS naming conventions (see 
TS 23.003 [10]). 

The access point name is a type 4 information element with a minimum length of 3 octets and a maximum length of 102 
octets. 

The access point name information element is coded as shown in figure 10.5.134/TS 24.008 and table 10.5.152/TS 
24.008. 



8 


7 6 5 4 3 2 


1 


Access point name lEI 


Length of access point name contents 


Access point name value 



octet 1 

octet 2 

octet 3 

octet n* 
Figure 10.5.134/TS 24.008: Access point name information element 

The value part is defined in 03.03 [10]. 



1 0.5.6.2 Network service access point identifier 

The purpose of the network service access point identifier information element is to identify the service access point 
that is used for the GPRS data transfer at layer 3. 

The network service access point identifier is a type 3 information element with a length of 2 octets. 

The value part of a network service access point identifier infoimation element is coded as shown in figure 10.5.135/TS 
24.008 and table 10.5.153/TS 24.008. 



8 


7 6 


5 


4 


3 2 


1 


NSAPI lEI 



Spare 


NSAPI 
value 



octet 1 
octet 2 



Figure 1 0.5.1 35/TS 24.008: Network service access point identifier information element 
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Table 1 0.5.1 53/TS 24.008: Network service access point identifier information element 



NSAPI 


va 


lue (octet 2) 


Bit 










4 3 


2 


1 















reserved 








1 


reserved 





1 





reserved 





1 


1 


reserved 


1 








reserved 


1 





1 


NSAPI 


5 


1 


1 





NSAPI 


6 


1 


1 


1 


NSAPI 


7 


1 








NSAPI 


8 


1 





1 


NSAPI 


9 


1 


1 





NSAPI 


10 


1 


1 


1 


NSAPI 


11 


1 1 








NSAPI 


12 


1 1 





1 


NSAPI 


13 


1 1 


1 





NSAPI 


14 


1 1 


1 


1 


NSAPI 


15 



10.5.6.3 Protocol configuration options 

The purpose of the protocol configuration options information element is to transfer external network protocol options 
associated with a PDP context activation. 

The protocol configuration options is a type 4 information element with a minimum length of 2 octets and a maximum 
length of 253 octets. 

The protocol configuration options information element is coded as shown in figure 10.5.136/TS 24.008 and 
table 10.5. 154/TS 24.008. 
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5 4 



3 2 1 



Protocol configuration options lEI 



Length of protocol config. options contents 



1 
ext 




Spare 



Configuration 
protocol 



Protocol ID 1 



Length of protocol ID 1 contents 



Protocol ID 1 contents 



Protocol ID 2 



Protocol ID 2 contents 



Protocol ID n-1 



Length of protocol ID n-1 contents 



Protocol ID n-1 contents 



Protocol ID n 



Length of protocol ID n contents 



Protocol ID n contents 



octet 1 
octet 2 
octet 3 

octet 4 
octet 5 

octet 6 

octet 7 

octet m 

octet m+1 
octet m+2 

octet m+4 

octet n 
octet n+1 

octet X 

octet x+1 
octet x+2 

octet x+3 

octet x+4 

octet y 

octet y+1 
octet y+2 

octet y+3 

octet y+4 

octet z 



Figure 1 0.5.1 36/TS 24.008: Protocol configuration options information element 
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Table 1 0.5.1 54/TS 24.008: Protocol configuration options information element 



Configuration protocol (octet 3) 

Bits 

32 1 

PPP for use with IP PDP type 

1 for use with OSP:IHOSS PDP type 

NOTE. The OSPTHOSS PDP type does not have a separately named configuration 
protocol analogous to PPP. 

All other values are interpreted as PPP in this version of the protocol. 

Configuration protocol options list (octets 4 to z) 

The configuration protocol options list contains a variable number of logical units, 
the may occur in an arbitrary order within the configuration protocol options list. 

Each unit is of variable length and consists of a 

- protocol identifier (2 octets); 

the length of the protocol identifier contents of the unit (1 octet); and 
the protocol identifier contents itself ( n octets). 

The protocol identifier field contains the hexadecimal coding of the configuration 
protocol identifier. Bit 8 of the first octet of the protocol identifier field contains 
the most significant bit and bit 1 of the second octet of the protocol identifier field 
contains the least significant bit. 

If the configuration protocol options list contains a protocol identifier that is not 
supported by the receiving entity the corresponding unit shall be discarded. 

The length of the protocol identifier contents field contains the binary coded 
representation of the length of the protocol identifier contents field of a unit. The 
first bit in transmission order is the most significant bit. 

The protocol identifier contents field of each unit contains information specific to 
the configuration protocol specified by the protocol identifier. 

PPP 

At least the following protocol identifiers (as defined in RFC 1700) shall be 
supported in this version of the protocol: 

- C021H (LCP; 

- C023H (PAP); 

- C223H (CHAP);and 

- 8021H (IPCP). 

The support of other protocol identifiers is implementation dependent and outside 
the scope of this specification. 

The protocol identifier contents field of each unit corresponds to a 'Packet' as 
defined in RFC 1661 that is stripped off the 'Protocol' and the 'Padding' octets. 

The detailed coding of the protocol identifier contents field is specified in the RFC 
that is associated with the protocol identifier of that unit. 

OSPrlHOSS (Octet Stream Protocol for Internet-Hosted Octet Stream Service) 

In the logical units described above, OSPTHOSS uses the term option identifier 
rather than protocol identifier. 

The currently defined option identifiers, their lengths, and the coding of the option 
identifier contents fields are specified in GSM 07.60. 
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1 0.5.6.4 Packet data protocol address 

The purpose of the packet data protocol address information element is to identify an address associated with a PDP. 

The packet data protocol address is a type 4 information element with minimum length of 4 octets and a maximum 
length of 20 octets. 

The packet data protocol address information element is coded as shown in figure 10.5. 137/TS 24.008 and 
table 1 0.5. 155/TS 24.008. 





8 


7 6 5 


4 3 2 1 






Packet data protocol address lEI 


octet 1 




Length of PDP address contents 


octet 2 





spare 


PDP type organisation 


octet 3 

octet 4 
octet 5 

octet n 


PDP type number 


Address information 



Figure 10.5. 137/TS 24.008: Packet data protocol address information element 
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Table 10.5.155/TS 24.008: Packet data protocol address information element 



Length of PDP address contents (octet 2) 

If the value of octet 2 equals 0000 0010, then : 

- No PDP address is included in this information 
element; and 

- If the PDP type is IP, dynamic addressing is 
applicable . 

NOTE : For PPP and OSP:IHOSS, no address is required in this 
information element. 

PDP type organisation (octet 3) 

Bits 

4 3 2 1 

In MS to network direction : 

ETSI allocated address (e.g. X.121) 

1 IETF allocated address 

1111 Empty PDP type 



All other values are reserved. 

In network to MS direction : 

ETSI allocated address (e.g. X.121) 

1 IETF allocated address 

All other values are reserved. 

If bits 4,3,2,1 of octet 3 are coded 

PDP type number value (octet 4) 

Bits 

87654321 

00000000 X.121 address 

00000001 PDP-type PPP 
00000010 PDP-type OSP:IHOSS 

All other values shall be interpreted as X.121 address 
in this version of the protocol. 

If bits 4,3,2,1 of octet 3 are coded 1 

PDP type number value (octet 4) 

Bits 

87654321 

00100001 IPv4 address 

01010111 IPv6 address 

All other values shall be interpreted as IPv4 address 
in this version of the protocol. 

In MS to network direction: 

If bits 4,3,2,1 of octet 3 are coded 1111 

PDP type number value (octet 4) 

bits 8 to 1 are spare and shall be coded all 0. 

Octet 3, bits 7, 6, and 5 are spare and shall be coded 
all 0. 



If PDP type number indicates X.121, the Address information is coded as follows: 
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digit 2 


digit 1 


digit 4 


digit 3 


digit m+1 


digit m 



octet 5 
octet 6 

octet n* 



Digit 1 contains the first BCD coded digit of the X.121 address. If the X.121 address has an odd number of digits, digit 
m+1 shall be padded with HEX(F). 

If PDP type number indicates IPv4, the Address information in octet 5 to octet 8 contains the IPv4 address. Bit 8 of 
octet 5 represents the most significant bit of the IP address and bit 1 of octet 8 the least significant bit . 

If PDP type number indicates IPv6, the Address information in octet 5 to octet 20 contains the IPv6 address. Bit 8 of 
octet 5 represents the most significant bit of the IP address and bit 1 of octet 20 the least significant bit. 

1 0.5.6.5 Quality of service 

The purpose of the quality of service information element is to specify the QoS parameters for a PDP context. 

The QoS IE is defined to allow backward compatibility to earlier version of Session Management Protocol. 

The quality of service is a type 4 information element with a length of 20 octets. 

The quality of service information element is coded as shown in figure 10.5.138/TS 24.008 and table 10.5.156/TS 
24.008. 
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Quality of service lEI 


octet 
Octet 
octet 

octet 

octet 

Octet 

Octet 
Octet 
Octet 
Octet 
Octet 
Octet 
Octet 
Octet 
Octet 
Octet 
Octet 
Octet 
Octet 
Octet 


1 


Length of quality of service IE 


2 



spare 


Delay 
class 


Reliability 
class 


3 


Peak 

throughput 



spare 


Precedence 
class 


4 



spare 


Mean 

throughput 


5 


Traffic Class 



spare 


Delivery 
order 


Delivery 

of 

erroneous 

SDU 


6 


Maximum SDU size 


7 
8 


Maximum bit rate for uplink 


9 

10 


Maximum bit rate for downlink 


11 
12 


Residual BER 


13 


SDU error ratio 


14 


Transfer delay 


15 


Guaranteed bit rate for uplink 


16 

17 


Guaranteed bit rate for downlink 


18 
19 



spare 


Traffic 
handling 
priority 


20 



Figure 1 0.5.1 38/TS 24.008: Quality of service information element 
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Table 1 0.5.1 56/TS 24.008: Quality of service information element 

Reliability class, octet 3 (see TS 23.060) 

Bits 

321 

In MS to network direction: 

Subscribed reliability class 

In network to MS direction: 

Reserved 

In MS to network direction and in network to MS direction : 

1 Acknowledged GTP, LLC, and RLC; Protected data 

1 Unacknowledged GTP; Acknowledged LLC and RLC, Protected data 

1 1 Unacknowledged GTP and LLC; Acknowledged RLC, Protected data 

1 Unacknowledged GTP, LLC, and RLC, Protected data 

1 1 Unacknowledged GTP, LLC, and RLC, Unprotected data 
1 1 1 Reserved 

All other values are interpreted as Unacknowledged GTP and LLC; Acknowledged RLC, Protected data in this version of 
the protocol. 

Delay class, octet 3 (see TS 22.060 and TS 23.060) 

Bits 

654 

In MS to network direction: 

Subscribed delay class 

In network to MS direction: 

Reserved 

In MS to network direction and in network to MS direction : 

1 Delay class 1 

1 Delay class 2 

1 1 Delay class 3 

1 Delay class 4 (best effort) 
1 1 1 Reserved 

All other values are interpreted as Delay class 4 (best effort) in this version 

of the protocol. 

Bit 7 and 8 of octet 3 are spare and shall be coded all 0. 

Precedence class, octet 4 (see TS 23.060) 

Bits 

321 

In MS to network direction: 

Subscribed precedence 

In network to MS direction: 

Reserved 

In MS to network direction and in network to MS direction : 

1 High priority 

1 Normal priority 

1 1 Low priority 

1 1 1 Reserved 
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All other values are interpreted as Normal priority in this version of the protocol. 

Bit 4 of octet 4 Is spare and shall be coded as 0. 

Peak throughput, octet 4 

Bits 

8765 

In MS to network direction: 

OSubscribed peak throughput 

In network to MS direction: 

Reserved 

In MS to network direction and in network to MS direction : 

1 Up to 1 000 octet/s 

10 Up to 2 000 octet/s 

11 Up to 4 000 octet/s 

10 Up to 8 000 octet/s 

10 1 Up to 1 6 000 octet/s 

110 Up to 32 000 octet/s 

111 Up to 64 000 octet/s 

1000 Up to 128 000 octet/s 

10 1 Up to 256 000 octet/s 

1111 Reserved 

All other values are interpreted as Up to 1 000 octet/s In this 

version of the protocol. 

Mean throughput, octet 5 

Bits 

54321 

In MS to network direction: 

Subscribed mean throughput 

In network to MS direction: 

Reserved 

In MS to network direction and in network to MS direction : 

0000 1 lOOoctet/h 

10 200 octet/h 

11 500 octet/h 

10 1 000 octet/h 

10 1 2 000 octet/h 

110 5 000 octet/h 

00111 10 000 octet/h 

10 20 000 octet/h 

10 1 50 000 octet/h 

01010 100 000 octet/h 

10 11 200 000 octet/h 

110 500 000 octet/h 

110 1 1 000 000 octet/h 

1110 2 000 000 octet/h 

1111 5 000 000 octet/h 

10000 10 000 000 octet/h 

10 1 20 000 000 octet/h 

10 10 50 000 000 octet/h 

11110 Reserved 

11111 Best effort 

The value Best effort indicates that throughput shall be made available to the MS on a per need and availability basis. 
All other values are interpreted as Best effort In this 
version of the protocol. 

Bits 8 to 6 of octet 5 are spare and shall be coded all 0. 
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Delivery of erroneous SDUs, octet 6 (see TS 23.107) 

Bits 

21 

In IVIS to network direction: 

Subscribed delivery of erroneous SDUs 

In network to MS direction: 

Reserved 

In MS to network direction and in network to MS direction : 

1 No detect ('-') 

1 Erroneous SDUs are delivered ('yes') 

1 1 Erroneous SDUs are not delivered ('no') 

All other values are reserved. 

Delivery order, octet 6 (see TS 23.107) 

Bits 

43 

In MS to network direction: 

Subscribed delivery order 

In network to MS direction: 

Reserved 

In MS to network direction and in network to MS direction : 

1 With delivery order ('yes') 

1 Without delivery order ('no') 

All other values are reserved. 

Bit 5 of octet 6 is spare and shall be coded all 0. 

Traffic class, octet 6 (see TS 23.107) 

Bits 

876 

In MS to network direction: 

Subscribed traffic class 

In network to MS direction: 

Reserved 

In MS to network direction and in network to MS direction : 

1 Conversational class 

1 Streaming class 

1 1 Interactive class 

1 Background class 

All other values are reserved. 

Maximum SDU size, octet 7 and 8 

In MS to network direction: 

All bits 1 Subscribed maximum SDU size 

In network to MS direction: 

All bits 1 Reserved 

In MS to network direction and in network to MS direction : 

The Maximum SDU size value consists of 16 bits. Refer to TS 23.107 for the maximum value. The granularity is 1 octet. 
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Maximum bit rate for uplink, octet 9 and 10 

In MS to network direction: 

All bits 1 Subscribed maximum bit rate for uplink 

In network to MS direction: 

All bits 1 Reserved 

In MS to network direction and in network to MS direction : 

The Maximum bit rate for uplink value consists of 16 bits. Maximum value is 2000 kbps. The granularity is 4 kbps. 

Maximum bit rate for downlink, octet 1 1 and 12 

In MS to network direction: 

All bits 1 Subscribed maximum bit rate for downlink 

In network to MS direction: 

All bits 1 Reservedin MS to network direction and in network to MS direction : 

The Maximum bit rate for downlink value consists of 16 bits. Maximum value is 2000 kbps. The granularity is 4 kbps. 

Residual BER, octet 13 (see TS 23.107) 

Bits 

87654321 

In MS to network direction: 

00000000 Subscribed residual BER 

In network to MS direction: 

00000000 Reserved 

In MS to network direction and in network to MS direction : 

The Residual BER value consists of 8 bits. The ranges from 5*10'^ to 6*10"**. 4 bits is assigned to multiplicand and 

exponent, respectively. 

010100 10 5*10"^ 

00010010 1*10"^ 
10000 11 4*10"^ 

00010011 1*10"^ 

00010100 1*10"'* 

00010101 1*10"^ 
00010110 1*10"*^ 
01101000 6*10"* 

All other values are reserved. 

SDU error ratio, octet 14 (see TS 23. 107) 

Bits 

87654321 

In MS to network direction: 

00000000 Subscribed SDU error ratio 

In network to MS direction: 

00000000 Reserved 

In MS to network direction and in network to MS direction : 

The SDU error ratio value consists of 8 bits. The ranges from 1*10"^ to 1*10"^. 4 bits is assigned to multiplicand and 

exponent, respectively. 

00010010 1*10"^ 

00010011 1*10"^ 

00010100 1*10""* 

00010101 1*10"' 
00010110 1*10"* 

All other values are reserved. 



Transfer delay, octet 15 

In MS to network direction: 

All bits 1 Subscribed transfer delay 

In network to MS direction: 

All bits 1 Reserved 

In MS to network direction and in network to MS direction : 

The Transfer delay value consists of 8 bits. Maximum value is 2560ms. The granularity is 10 ms. 
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The Transfer delay value is ignored if the Trafic Class is Interactive class or Background class. 

Guaranteed bit rate for uplink, octet 16 and 17 

In MS to network direction: 

All bits 1 Subscribed guaranteed bit rate for uplink 

In network to MS direction: 

All bits 1 Reserved 

In MS to network direction and in network to MS direction : 

The Guaranteed bit rate for uplink value consists of 16 bits. Maximum value is 2000 kbps. The granularity is 4 kbps. 

The Guaranteed bit rate for uplink value is ignored if the Trafic Class is Interactive class or Background class. 

Guaranteed bit rate for downlink, octet 18 and 19 

In MS to network direction: 

All bits 1 Subscribed guaranteed bit rate for downlink 

In network to MS direction: 

All bits 1 Reserved 

In MS to network direction and in network to MS direction : 

The Guaranteed bit rate for downlink value consists of 16 bits. Maximum value is 2000 kbps. The granularity is 4 kbps. 

The Guaranteed bit rate for downlink value is ignored if the Trafic Class is Interactive class or Background class. 

Traffic handling priority, octet 20 (see TS 23.107) 

Bits 

21 

In MS to network direction: 

Subscribed traffic handling priority 

In network to MS direction: 

Reserved 

In MS to network direction and in network to MS direction : 

1 Priority level 1 

1 Priority level 2 
1 1 Priority level 3 

All other values are reserved. 

The Traffic handling priority value is ignored if the Trafic Class is Conversation class. Streaming class or Background 

class. 

Bit 3 to 8 of octet 20 are spare and shall be coded all 0. 



10.5.6.6 SM cause 

The purpose of the SM cause information element is to indicate the reason why a session management request is 
rejected. 

The SM cause is a type 3 information element with 2 octets length. 

The SM cause information element is coded as shown in figure 10.5.139/TS 24.008 and table 10.5.157/TS 24.008. 

87 6 5 4 321 

octet 1 



SM cause lEI 



Cause value 



octet 2 



Figure 10.5.139/TS 24.008: SM cause information element 
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Table 1 0.5.1 57/TS 24.008: SM cause information element 



Cause 


value (octet 2) 


Bits 










8 7 


6 


5 4 


3 2 


1 










1 1 





1 


LLC or SNDCP failure (GSM only) 








1 1 


1 





Insufficient resources 








1 1 


1 


1 


Missing or unknown APN 








1 1 


1 





Unknown PDP address or PDP type 








1 1 


1 


1 


User Aauthentication failed 








1 1 


1 1 





Activation rejected by GGSN 








1 1 


1 1 


1 


Activation rejected, unspecified 





1 











Service option not supported 





1 








1 


Requested service option 






not subscribed 





1 





1 





Service option temporarily 






out of 


or 


der 





1 





1 


1 


NSAPI already used 





1 





1 





Regular deactivation 





1 





1 


1 


QoS not accepted 





1 





1 1 





Network failure 





1 





1 1 


1 


Reactivation required 





1 


1 





1 


TFT already used 





1 


1 


1 


1 


Invalid TFT 





1 


1 


1 





Unknown PDP context 


1 





1 





1 


Invalid transaction identifier value 


1 





1 1 


1 1 


1 


Semantically incorrect message 


1 


1 











Invalid mandatory information 


1 


1 








1 


Message type non-existent 






or 


not 


implemented 


1 


1 





1 





Message type not compatible with 






the pr 


Dtocol State 


1 


1 





1 


1 


Information element non-existent 






or 


not 


implemented 


1 


1 





1 





Conditional IE error 


1 


1 





1 


1 


Message not compatible with 






the pr 


Dtocol state 


1 


1 


1 


1 1 


1 


Protocol error, unspecified 


Any 


other 


value 


received by the mobile station shall 


be treated as 


0010 0010, 'Service option temporarily 


out 


of order' 


Any other value received by the network 


shall 


be treated 


as 0110 1111, 'Protocol error. 


unspecified ' . 






NOTE: 


The 


listed 


cause values are defined in 






Annex I 







10.5.6.7 



Linked TI 



The purpose of the Linked TI information element is to specify the active PDP context from which the PDP address for 
the new PDP context could be derived by the network. 

The Linked TI is a type 4 information element with a minimum length of 3 octets and a maximum length of 4 octets. 

The Linked TI information element is coded as shown in figure 10.5.140/TS 24.008. 

87654321 

octet 1 
octet 2 

octet 3 



Linked TI lEI 


Length of Linked TI IE 


TI 
flag 


TI value 



Spare 


1 
EXT 


TI value 



octet 4 



Figure 10.5.140/TS 24.008: Linked 7/ information element 

The coding of the TI flag, the TI value and the EXT bit is defined in TS 24.007[20]. 
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1 0.5.6.8 AA deactivation cause 

The purpose of the AA deactivation cause information element is to indicate the reason why a AA PDP context was 
deactivated by the network. 

The AA deactivation cause information element is coded as shown in figure 10.5.140/TS 24.008 and table 10.5.158/TS 
24.008. 



The AA deactivation cause is a type 1 information element. 

8 7 6 5 



3 



1 



AA deactivation cause 
indicator lEI 




spare 



AA deactivation 
cause value 



octet 1 



Figure 10.5.140/TS 24.008: AA deactivation cause information element 
Table 10.5.158/TS 24.008: AA deactivation cause information element 



AA deactivation cause value (octet 1) 

Bits 

3 2 1 

Normal, unspecified 

1 Server address violation 

10 Network overload 

Oil Server not reachable 

All other values are interpreted as 
Normal, unspecified by this version 
of the protocol. 



1 0.5.6.9 LLC service access point identifier 

The purpose of the LLC service access point identifier information element is to identify the service access point that is 
used for the GPRS data transfer at LLC layer. 

The LLC service access point identifier is a type 3 information element with a length of 2 octets. 

The value part of a LLC service access point identifier information element is coded as shown in figure 10.5. 141/TS 
24.008 and table 10.5.159/TS 24.008. 



8 


7 6 


5 


4 


3 2 


1 


LLC SAPI lEI 



Spare 


LLC SAPI 
value 



octet 1 
octet 2 

Figure 10.5. 141/TS 24.008: LLC service access point identifier information element 
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Table 1 0.5.1 59/TS 24.008: LLC service access point identifier information element 



LLC 


SAP I 


value (octet 2) 


Bit 






4 3 


2 1 










LLC SAPI not assigned 





1 1 


SAP I 3 


1 


1 


SAPI 5 


1 


1 


SAPI 9 


1 


1 1 


SAPI 11 


All 


other values are reserved. 



1 0.5.6.1 Tear down indicator 

The purpose of the tear down indicator information element is to indicate whether only the PDP context associated with 
this specific TI or all active PDP contexts sharing the same PDP address as the PDP context associated with this 
specific TI shall be deactivated. 

The tear down indicator is a type 1 information element. 

The tear down indicator information element is coded as shown in figure 10.5.142/TS 24.008 and table 10.5.160/TS 
24.008. 



8 7 6 5 


4 


3 


2 


1 


Tear down indicator 
lEI 



spare 


TDI 
flag 



octet 1 

Figure 10.5.142/TS 24.008: Tear down /nd/cafor information element 
Table 10.5.160/GSM 04.08: Tear down ;nd;cafof information element 



Tear down indicator (TDI) flag (octet 1) 

Bit 
1 

tear down not requested 

1 tear down requested 



1 0.5.6.1 1 Packet Flow Identifier 

The Packet Flow Identifier (PFI) information element indicates the Packet Flow Identifier for a Packet Flow Context. 

The Packet Flow Identifier is a a type 4 information element with 3 octets length. 

The Packet Flow Identifier information element is coded as shown in figure 10.5. 143/TS 24.008 and table 10.5. 161/TS 
24.008. 



7 



3 



1 



Packet Flow Identifier lEI 



Length of Packet Flow Identifier IE 



Packet Flow Identifier value 



octet 1 
octet 2 
octet 3 



Figure 1 0.5.1 43/TS 24.008: Pac/cef F/ow Wenf/ffer information element 
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Table 10.5.161/TS 24.008: Packet Flow Identifier iniormation element 



Packet Flow 


Identifier value (octet 3) 


Bits 












8 7 


6 


5 4 


3 


2 


1 






















Best Effort 

















1 


Signaling 














1 





SMS 










to 





1 


1 


} 

} reserved 











1 


1 


1 


} 








1 
to 











} 

} dynamically assigned 


1 1 


1 


1 1 


1 


1 


1 


} 



1 0.5.6.1 2 Traffic Flow Template 

The purpose of the traffic flow template information element is to specify the TFT parameters and operations for a PDP 
context. 

The trafl^icflow template is a type 4 information element with a minimum length of 3 octets. [FFS: No upper length 
limit is specified except for that given by the maximum number of octets in a L3 message.] 

The trafl^icflow template information element is coded as shown in Figure 10.5.144/TS 24.008 and Table 10.5.162/TS 
24.008. 



7 6 5 4 3 2 1 



Traffic flow template lEI 



Length of traffic flow template IE 



TFT operation 
code 



Spare 




Number of packet 
filters 



Packet filter list 



Octet 

1 

Octet 
2 

Octet 
3 

Octet 
4 

Octet 



Figure 10.5.144/TS 24.008: Traffic flow template information element 



7 6 5 4 3 2 1 



Packet filter identifier 1 



Packet filter identifier 2 



Packet filter identifier N 



Octet 
4 

Octet 
5 



Octet 
N+3 



Figure 1 0.5.1 44a/TS 24.008: Packet filter list when the TFT operation is "delete packet filters from 

existing TFT" (z=N+3) 
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7 6 5 4 3 2 1 



Packet filter identifier 1 


Packet filter evaluation precedence 


1 


Length of Packet filter contents 1 


Packet filter contents 1 


Packet filter identifier 2 


Packet filter evaluation precedence 


2 


Length of Packet filter contents 2 


Packet filter contents 2 




Packet filter identifier N 


Packet filter evaluation precedence 


N 


Length of Packet filter contents N 


Packet filter contents N 



Figure 10.5.144b/TS 24.008: Packet filter /;sf when the TFT operation is "create 
pacltet filters to existing TFT" or "replace packet filters in existing 



Octet 4 

Octet 5 

Octet 6 

Octet 7 

Octet m 
Octet m+1 
Octet m+2 
Octet m+3 
Octet m+4 

Octet n 
Octet n+1 

Octet y 
Octet y+1 
Octet y+2 
Octet y+3 
Octet y+4 

Octet z 

new TFT", or "add 
TFT" 
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Table 1 0.5.1 62/TS 24.008: Traffic flow template information element 



TFT operation code (octet 3) 

Bits 

876 

Spare 

1 Create new TFT 

1 Delete existing TFT 

Oil Add packet filters to existing TFT 

10 Replace packet filters in existing TFT 

10 1 Delete packet filters from existing TFT 

110 Reserved 

111 Reserved 



Number of packet filters (octet 3) 



The number of packet filters contains the binary coding for the number of packet 
filters in the packet filter list. The number of packet filters field is encoded in bits 4 
through 1 of octet 3 where bit 4 is the most significant and bit 1 is the least 
significant bit. For the "delete existing TFT" operation, the number of packet filters 
shall be coded as 0. For all other operations, the number of packet filters shall be 
greater than and less than or equal to 8. 

Packet filter list (octets 4 to z) 

The packet filter list contains a variable number of packet filters. For the "delete 
existing TFT" operation, the packet filter list shall be empty. 

For the "delete packet filters from existing TFT" operation, the packet filter list 
shall contain a variable number of packet filter identifiers. This number shall be 
derived from the coding of the number of packet filters field in octet 3. 

For the "create new TFT", "add packet filters to existing TFT" and "replace packet 
filters in existing TFT" operations, the packet filter list shall contain a variable 
number of packet filters. This number shall be derived from the coding of the 
number of packet filters field in octet 3. 

Each packet filter is of variable length and consists of 

a packet filter identifier (1 octet); 

a packet filter evaluation precedence (1 octet); 

the length of the packet filter contents (1 octet); and 

the packet filter contents itself (v octets). 

The packet filter identifier field is used to identify each packet filter in a TFT. 
Since the maximum number of packet filters in a TFT is 8, only the least 
significant 3 bits are used. Bits 8 through 4 are spare bits. 

The packet filter evaluation precedence field is used to specify the precedence for 
the packet filter among all packet filters in all TFTs associated with this PDP 
address. Higher the value of the packet filter evaluation precedence field, lower the 
precedence of that packet filter is. The first bit in transmission order is the most 
significant bit. 

The length of the packet filter contents field contains the binary coded 
representation of the length of the packet filter contents field of a packet filter. The 
first bit in transmission order is the most significant bit. 
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Table 10.5.162/TS 24.008 (continued): Traffic flow template information element 



The packet filter contents field is of variable size and contains a variable number 
(at least one) of packet filter components. Each packet filter component shall be 
encoded as a sequence of a one octet packet filter component type identifier and a 
fixed length packet filter component value field. The packet filter component type 
identifier shall be transmitted first. 

In each packet filter, there shall not be more than one occurrence of each packet 
filter component type. Among the "IPv4 source address type" and "IPv6 source 
address type" packet filter components, only one shall be present in one packet 
filter. Among the "single destination port type" and "destination port range type" 
packet filter components, only one shall be present in one packet filter. Among the 
"single source port type" and "source port range type" packet filter components, 
only one shall be present in one packet filter. 

Packet filter component type identifier 

Bits 

87654321 

10 IPv4 source address type 

10 IPv6 source address type 

1 10 Protocol identifier/Next header type 

10 Single destination port type 
01000001 Destination port range type 

01010000 Single source port type 

01010001 Source port range type 

01 100000 Security parameter index type 
01110000 Type of service/Traffic class type 
10 Flow label type 

All other values are reserved. 

For "IPv4 source address type", the packet filter component value field shall be 
encoded as a sequence of a four octet IPv4 address field and a four octet IPv4 
address mask field. The IPv4 address field shall be transmitted first. 

For "IPv6 source address type", the packet filter component value field shall be 
encoded as a sequence of a sixteen octet IPv6 address field and a sixteen octet IPv6 
address mask field. The IPv6 address field shall be transmitted first. 

For "Protocol identifier/Next header type", the packet filter component value field 
shall be encoded as one octet which specifies the IPv4 protocol identifier or IPv6 
next header. 

For "Single destination port type" and "Single source port type", the packet filter 
component value field shall be encoded as two octet which specifies a port number. 

For "Destination port range type" and "Source port range type", the packet filter 
component value field shall be encoded as a sequence of a two octet port range low 
limit field and a two octet port range high limit field. The port range low limit field 
shall be transmitted first. 

For "Security parameter index", the packet filter component value field shall be 
encoded as four octet which specifies the IPSec security parameter index. 

For "Type of service/Traffic class type", the packet filter component value field 
shall be encoded as a sequence of a one octet Type-of-Service/Traffic Class field 
and a one octet Type-of-Service/Traffic Class mask field. The Type-of- 
Service/Traffic Class field shall be transmitted first. 

For "Flow label type", the packet filter component value field shall be encoded as 
three octet which specifies the IPv6 flow label. The bits 8 through 5 of the first 
octet shall be spare whereas the remaining 20 bits shall contain the IPv6 flow label. 
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10.5.7. GPRS Common information elements 



10.5.7.1 [Spare] 



10.5.7.2 Radio priority 

The purpose of the radio priority information element is to specify the priority level that the MS shall use at the lower 
layers for transmission of data related to a PDP context or for mobile originated SMS transmission. 

The radio priority information element is coded as shown in figure 10.5.143/TS 24.008 and table 10.5.161/TS 24.008. 

The radio priority is a type 1 information element. 





8 7 6 5 4 


3 2 1 






Radio priority lEI 


Radio priority 


octet 1 




spare 


level value 





Figure 10.5.143/TS 24.008: Rac//o pr/of/fy information element 



Table 10.5.161/TS 24.008: Rad/opr/of/Yy information element 



Radio priority level value (octet 1) 

Bits 

3 2 1 

1 priority level 1 (highest) 

10 priority level 2 

Oil priority level 3 

10 priority level 4 (lowest) 

All other values are interpreted as 
priority level 4 by this version 
of the protocol. 



10.5.7.3 



GPRS Timer 



The purpose of the GPRS timer information element is to specify GPRS specific timer values, e.g. for the READY 
timer. 

The GPRS timer is a type 3 information element with 2 octets length. 

The GPRS timer information element is coded as shown in figure 10.5.144/TS 24.008 and table 10.5.162/TS 24.008. 

octet 1 
octet 2 
Figure 10.5.144/TS 24.008: GPRS Timer value information element 



8 


7 


6 5 4 


3 2 


1 


GPRS Timer lEI 




Unit 


Timer 


value 
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Table 1 0.5.1 62/TS 24.008: GPRS Timer value information element 



Timer 


value (octet 2) 




Bits 5 


to 1 represent the binary coded timer 


value. 






Bits 6 


to 8 defines the timer value unit 




for th 


e GPRS timer as follows: 




Bits 






8 7 6 









value is incremented in multiples 
seconds 


of 2 


1 


value is incremented in multiples 
minute 


of 1 


10 


value is incremented in multiples 
decihours 


of 


111 


value indicates that the timer is 
deactivated. 




Other 


values shall be interpreted as mult 


iples 


of 1 minute in this version of the protocol. 
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1 1 List of system parameters 

The description of timers in the following table should be considered a brief summary. The precise details are found in 
sections 3 to 6, which should be considered the definitive descriptions. 

1 1 .1 Timers and counters for radio resource management 

See 04.18 

1 1 .2 Timers of mobility management 

Table 11.1/TS 24.008: Mobility management timers - MS-side 



+ 





+ 


TIMER 


MM 


TIME 


CAUSE FOR 


NORMAL STOP 


AT THE 


NUM. 


ST 


OUT 


START 




EXPIRY 




AT 



3 


VAL. 



20s 




-LOC UPD REQ 




- LOC UPD ACC 





T3210 








sent 


- LOC UPD REJ 

- AUTH REJ 

- Lower layer 
failure 




Start T3211 



T3211 


1 


15s 


-LOC UPD REJ 


- Time out 


Restart the 




2 




witlT cause 


- cell change 


Location up- 








#17 netw. 


- request for 


date proc. 








failure 


MM connec- 










-lower layer 


tion 










failure or 


establish- 










RR conn. 


ment 










released 


- change of 










after 


LA 










RR conn. 












abort 












during loc. 












updating 









T3212 


1, 


Note 


-termination 


-initiation 


initiate 




2 


1 


of MM ser- 


of MM ser- 


periodic 








vice or MM 


vice or MM 


updating 









signalling 



signalling 






T3213 


1 


4s 


-location up 


- expiry 


new random 




2 




dating fai 


- change of 


attempt 




11 




lure 


BCCH para- 
meter 






T3220 


7 


5s 


-IMSI DETACH 


- release 
from RM- 

sublayer 


enter Null 
or Idle, AT- 
TEMPTING TO 


T3230 




5 






15s 






-CM SERV REQ 

CM REEST REQ 






- Cipher mode 
setting 

- CM SERV REJ 

- CM SERV ACC 



UPDATE 



provide 
release ind. 




T3240 


9 


10s 


see section 


see section 


abort the 




10 




11.2.1 


11.2.1 


RR connec- 
tion 



NOTE 1: The timeout value is broadcasted in a SYSTEM INFORMATION message 
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Table 11.2/TS 24.008: Mobility management timers - network-side 



TIMER 
NUM. 


MM 

ST 
AT 


TIME 
OUT 

VAL. 


CAUSE FOR 

START 


NORMAL STOP 


AT THE FIRST 
EXPIRY 


AT THE 
SECOND 
EXPIRY 


T3250 


6 


12s 


TMSI-REAL- 
CMD or 
LOC UPD ACC 
with new 
TMSI sent 


TMSI-REALL- 
COM received 


Optionally 
Release 
RR connec- 
tion 




T3255 




Note 


LOC UPD ACC 
sent with 
"Follow on 
Proceed" 


CM SERVICE 
REQUEST 


Release RR 
Connection 
or use for 
mobile sta- 
tion termi- 
nating call 




T3260 


5 


12s 


AUTHENT- 
REQUEST 
sent 


AUTHENT- Optionally 
RESPONSE Release 
received RR connec- 
tion 


T3270 

+ 


4 


12s 


IDENTITY 
REQUEST 
sent 


IDENTITY 
RESPONSE 
received 


Optionally 
Release 
RR connec- 
tion 





NOTE 2: The value of this timer is not specified by this recommendation. 

11.2.1 Timer T3240 

Timer T3240 is started in the mobile station when: 

the mobile station receives a LOCATION UPDATING ACCEPT message completing a location updating 
procedure in the cases specified in section 4.4.4.6 and 4.4.4.8; 

the mobile station receives a LOCATION UPDATING REJECT message in the cases specified in section 

4.4.4.7; 

the mobile station has sent a CM SERVICE ABORT message as specified in section 4.5. 1.7; 

the mobile station has released or aborted all MM connections in the cases specified in 4.3.2.5, 4.3.5.2, 4. 5. LI, 
and 4.5.3.1. 

Timer T3240 is stopped, reset, and started again at receipt of an MM message. 

Timer T3240 is stopped and reset (but not started) at receipt of a CM message that initiates establishment of an CM 
connection (an appropriate SETUP, REGISTER, or CP-DATA message as defined in TS 24.008, TS 24.010 or 
GSM 04.11). 
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1 1 .2.2 Timers of GPRS mobility management 

Table 11.3/TS 24.008: GPRS Mobility management timers - MS side 



TIMER 
NUM. 


TIMER 
VALUE 


STATE 


CAUSE OF START 


NORMAL STOP 


ON THE 
^st 2nd 3rd 4th 

EXPIRY Note 3 


T3310 


15s 


GMM- 
REG-INIT 


ATTACH REO sent 


ATTACH ACCEPT 
received 

ATTACH REJECT 
received 


Retransmission of 
ATTACH REO 


T3311 


15s 


GMM-DEREG 
Al IbMPTING 
TO ATTACH or 

GMM-REG 

Al IbMPTING 

TO UPDATE 


ATTACH REJ with other cause 
values as described in chapter 
'GPRS Attach' 

ROUTING AREA UPDATE REJ 
with other cause values as 
described in chapter 'Routing 
Area Update' 

Low layer failure 


Change of the 
routing area 


Restart of the 
Attach or the RAU 
procedure with 
updating of the 
relevant attempt 
counter 


T3321 


15s 


GMM- 
DEREG-INIT 


DETACH REG sent 


DETACH ACCEPT 
received 


Retransmission of 
the DETACH REO 


T3330 


15s 


GMM- 

ROUTING- 

UPDATING- 

INITIATED 


ROUTING AREA UPDATE 
REOUESTsent 


ROUTING AREA 
UPDATE ACC 
received 

ROUTING AREA 
UPDATE REJ 
received 


Retransmission of 
the ROUTING 
AREA UPDATE 
REOUEST 
message 



Table 11. 3a/TS 24.008: GPRS Mobility management timers - MS side 



TIMER 
NUM. 


TIMER 
VALUE 


STATE 


CAUSE OF START 


NORMAL STOP 


ON 
EXPIRY 


T3302 


T3212 
Note 4 


GMM-DEREG 

or 

GMM-REG 


At attach failure and the attempt 
counter is greater than or equal 
to 5. 

At routing area updating failure 
and the attempt counter is greater 
than or equal to 5. 


At successful attach 

At successful 
routing area 
updating 


On every expiry, 
initiation of the 

GPRS attach 
procedure 

or 

RAU procedure 


T3312 


Default 
54 min 

Note1 


GMM-REG 


In GSM, when READY state is left. 

In UMTS, when PMM- 
CONNECTED mode is left. 


When entering state 
GMM-DEREG 


Initiation of the 
Periodic RAU 
procedure 


T3314 
READY 

(GSM only) 


Default 
44 sec 
Note 2 


All except GMM- 
DEREG 


Transmission of a PTP PDU 


Forced to Standby 


No cell-updates are 
performed 


T3316 

AA- 
READY 


Default 
44 sec 
Note 2 


~ 


Transmission of a PTP PDU 


~ 


~ 


T3317 

(UMTS 
only) 


10s 


GMM-REG 


SERVICE REQ sent 


Security mode 
setting procedure is 
completed, 

SERVICE ACCEPT 
received, or 

SERVICE REJECT 
received 


Abort the 
procedure 
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NOTE 1 : The value of this timer is used if the network does not indicate another value in a GMM signalling 
procedure. 

NOTE 2: The default value of this timer is used if neither the MS nor the Network send another value, or if the 
Network sends this value, in a signalling procedure. 

NOTE 3: Typically, the procedures are aborted on the fifth expiry of the relevant timer. Exceptions are described in 
the corresponding procedure description. 

NOTE 4: T3302 is loaded with the same value which is used to load T3212. 



Table 11.4/TS 24.008: GPRS Mobility management timers - network side 



TIMER 


TIMER 


STATE 


CAUSE OF START 


NORMAL STOP 


ON THE 


NUM. 


VALUE 








^st gnd 3rd 4th 
EXPIRY Note 3 


T3322 


6s 


GMM- 


DETACH REQ sent 


DETACH ACCEPT 


Retransmission of 






DEREG-INIT 




received 


DETACH 
REQUEST 


T3350 


6s 


GMM- 


ATTACH ACCEPT 


ATTACH 


Retransmission of 






COMMON- 


sent with P-TMSI and/or TMSI 


COMPLETE 


the same message 






PROC-INIT 




received 


type, i.e. ATTACH 








RAU ACCEPT sent with P-TIVISI 


RAU COMPLETE 


ACCEPT, RAU 








and/or TMSI 

P-TMSI REALLOC COMMAND 


received 

P-TMSI REALLOC 


ACCEPT or 

REALLOC 

COMMAND 








sent 


COMPLETE 
received 




T3360 


6s 


GMM- 


AUTH AND CIPH REQUEST 


AUTH AND CIPH 


Retransmission of 






COMMON- 


sent 


RESPONSE 


AUTH AND CIPH 






PROC-INIT 




received 


REQUEST 


T3370 


6s 


GMM- 


IDENTITY REQUEST sent 


IDENTITY 


Retransmission of 






COMMON- 




RESPONSE 


IDENTITY 






PROC-INIT 




received 


REQUEST 



Table 11.4a/TS 24.008: GPRS Mobility management timers - network side 



TIMER 
NUM. 


TIMER 
VALUE 


STATE 


CAUSE OF START 


NORMAL STOP 


ON 
EXPIRY 


T3313 


Note1 


GMM_REG 


Paging procedure initiated 


Paging procedure 
completed 


Network dependent 


T3314 
READY 

(GSM only) 


Default 
44 sec 
Note 2 


All except GMM- 
DEREG 


Receipt of a PTP PDU 


Forced to Standby 


The network shall 
page the MS if a 
PTP PDU has to be 
sent to the MS 


T3316AA- 
READY 


Default 
44 sec 
Note 2 


' 


Receipt of a PTP PDU 


" 


" 


Mobile 
Reachable 


Default 4 
min greater 
thanT3312 


All except GMM- 
DEREG 


In GSM, change from READY to 
STANDBY state 

In UMTS, change from PMM- 
CONNECTED mode to PMM-IDLE 
mode. 


PTP PDU received 


Network dependent 
but typically paging 
is halted on 1st 
expiry 



NOTE 1 : The value of this timer is network dependent. 

NOTE 2: The default value of this timer is used if neither the MS nor the Network send another value, or if the 

Network sends this value, in a signalling procedure. The value of this timer should be slightly shorter in 
the network than in the MS, this is a network implementation issue. 
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NOTE 3: Typically, the procedures are aborted on the fifth expiry of the relevant timer. Exceptions are described in 
the corresponding procedure description. 



1 1 .2.3 Timers of session management 



Table 11.2c/TS 24.008: Session management timers - IVIS side 



TIMER 


TIMER 


STATE 


CAUSE OF START 


NORMAL STOP 


ON THE 


NUM. 


VALUE 








^st 2nd 3rd 4th 
EXPIRY 


T3380 


30s 


PDP- 


ACTIVATE PDP CONTEXT 


ACTIVATE 


Retransmission of 






ACTIVE-PEND 


REOUEST or ACTIVATE 


PDP CONTEXT 


ACTIVATE PDP 








SECONDARY PDP CONTEXT 


ACCEPT or 


CONTEXT REO or 








REOUEST sent 


ACTIVATE 
SECONDARY PDP 
CONTEXT 
ACCEPT received 

ACTIVATE 
PDP CONTEXT 
REJECT or 
ACTIVATE 
SECONDARY PDP 
CONTEXT 
REJECT received 


ACTIVATE 
SECONDARY PDP 
CONTEXT 
REOUEST 


T3381 


8s 


PDP-MODIFY- 


MODIFY PDP CONTEXT 


MODIFY PDP 


Retransmission of 






PENDING 


REOUEST sent 


CONTEXT 
ACCEPT received 


MODIFY PDP 

CONTEXT 

REOUEST 


T3390 


8s 


PDP- 


DEACTIVATE PDP CONTEXT 


DEACTIVATE PDP 


Retransmission of 






INACT-PEND 


REOUEST sent 


CONTEXT ACC 
received 


DEACTIVATE 
PDP CONTEXT 
REOUEST 



NOTE: Typically, the procedures are aborted on the fifth expiry of the relevant timer. Exceptions 

are described in the corresponding procedure description. 

Table 11.2d/TS 24.008: Session management timers - network side 



TIMER 
NUM. 


TIMER 
VALUE 


STATE 


CAUSE OF START 


NORMAL STOP 


ON THE 
^st 2nd 3rd 4th 

EXPIRY 


T3385 


8s 


PDP- 
ACT-PEND 


REOUEST PDP CONTEXT 
ACTIVATION sent 


ACTIVATE PDP 
CONTEXT REO 
received 


Retransmission of 
REOUEST PDP 
CONTEXT 
ACTIVATION 


T3386 


8s 


PDP- 
MOD-PEND 


MODIFY PDP CONTEXT 
REOUEST sent 


MODIFY PDP 
CONTEXT ACC 
received 


Retransmission of 
MODIFY PDP 
CONTEXT REO 


T3395 


8s 


PDP- 
INACT-PEND 


DEACTIVATE PDP CONTEXT 
REOUEST sent 


DEACTIVATE PDP 
CONTEXT ACC 
received 


Retransmission of 
DEACTIVATE PDP 
CONTEXT REO 


T3397 


8s 


PDP- 
INACT-PEND 


DEACTIVATE AA PDP 
CONTEXT REOUEST sent 


DEACTIVATE AA 
PDP CONTEXT 
ACCEPT received 


Retransmission of 
DEACTIVATE AA 
PDP CONTEXT 
REOUEST 



NOTE: Typically, the procedures are aborted on the fifth expiry of the relevant timer. Exceptions 

are described in the corresponding procedure description. 
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1 1 .3 Timers of circuit-switched call control 

Table 11.3/TS 24.008: Call control timers - MS side 



TIM. 
NUM. 

T303 



T305 



T308 



T310 

Note 

1 

T313 



T323 



T332 



TIM 
VAL 

30s 



30s 



30s 



30s 



30s 



30s 



30s 



T3345 30s 



T336 



T337 



10s 



10s 



STATE OF 
CALL 

Call 
initiated 



Disconnect 
Request 

Release 
request 



Outgoing 

call 

Proceeding 

Connect 
Request 



Modify 
Request 



Wait for 
network 
info . 

I CC-Est. 
Confirmed 



CAUSE OF 
START 

CM SER RQ 
sent 



DISC 
sent 



REL 
sent 



CALL 
PROC 
received 

CONN 
sent 



MOD 
sent 



START_CC 
sent 



CC-EST 
CONF.sent 



START 
DTMF sent 



STOP DTMF 
sent 



NORMAL 
STOP 

CALL PROC, 
or REL COMP 
received 

REL or DISC 
received 



REL COMP 
or REL 
received 



ALERT, CONN, 
DISC or 
PROG rec. 

CONNect 

ACKnowledge 

received 

MOD COMP 
or MOD REJ 
received 

CC-EST. 
received 



RECALL 
received 



START DTMF 
ACK or 
START DTMF 
REJECT 
received 



STOP DTMF 

ACK 

received 



AT FIRST 
EXPIRY 

Clear the 
call 



REL sent. 



Retrans . 
RELEASE 
restart 
T308 

Send DISC 



Send DISC 



Clear 
the call 



Clear 
the call 



Clear 
the call 



The 


MS 


considers | 


the 


DTMF 


Procedure 


(for the 


digit) to 


be 


1 



AT SECOND 
EXPIRY 

Timer is 

not 

restarted 

Timer is 

not 

restarted 

Call ref. 
release 



Timer is 

not 

restarted 

Timer is 

not 

restarted 

Timer is 

not 

restarted 

Timer is 

not 

restarted 

Timer is 

not 

restarted 



termina- 
ted 
The MS 
considers 
the DTMF 
procedure 
(for the 
current 
digit) to 
be 

termina- 
ted 



Timer 


is 


not 




restarted 


Timer 


is 


not 




restarted 



NOTE 1: T310 is not started if progress indicator #1, #2, or #64 has been delivered in the CALL PROCEEDING 
message or in a previous PROGRESS message. 
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Table 11. 4/TS 24.008: Call control timers - network side 



TIM. 
NUM. 


DFT 
TIM 
VAL 


STATE OF 
CALL 


CAUSE 

FOR 

START 


NORMAL STOP 


AT FIRST 
EXPIRY 


AT SECON 
EXPIRY 


T301 
Note 

1 


Min 
180s 


Call 
received 


ALERT 
received 


CONN 
received 


Clear 
the call 


Timer 
is not 
restarted 


T303 


Note 
2 


Call 
present 


SETUP 
sent 


CALL CONF 
or REL COMP 
received 


Clear 
the call 


Timer 
Is not 
restarted 


T305 


30s 


Disconnect 
Indication 


DISC 

without 

progress 

indie. 

#8 sent 

or CCBS 

Possible 


REL or DISC 
received 


Network 

sends 

RELEASE 


Timer 
Is not 
restarted 


T306 


30s 


Disconnect 
Indication 


DISC 
with 

progress 
indie. 
#8 sent 
but no 
CCBS 
possible 


REL or DISC 
received 


Stop the 
tone/ 
announc. 
Send REL 


Timer 
is not 
restarted 


T308 


Note 
2 


Release 
request 


REL sent 


REL COMP 
or REL 
received 


Retrans . 
RELEASE 
restart 
T308 


Release 

call 

reference 


T310 


Note 
2 


Incoming 
call pro- 
ceeding 


CALL 
CONF 
received 


ALERT, CONN 
or DISC 
received 


Clear 
the call 


Timer 
Is not 
restarted 


T313 


Note 
2 


Connect 
Indication 


CON sent 


CON ACK 
received 


Clear 
the call 


Timer 
Is not 
restarted 


T323 


30s 


Modify 
request 


MOD sent 


MOD COMP 

or MOD REJ 

received 


Clear 
the call 


Timer 
is not 
restarted 


T331 


Note 
2 


CC 
Connec. 
Pending 


CM-SERV 
PROMPT 
sent 


START CC 
received 


Clear 
the call 


Timer 
Is not 
restarted 


T333 


Note 
2 


CC-Est. 
Present 


START CC 
received 


CC-EST. CONF 

or REL COMP 
received 


Clear 
the call 


Timer 
is not 
restarted 


T334 

Note 

3 


Mln 
15s 


CC-Est. 

Confirmed 


RECALL 
sent 


SETUP 
received 


Clear 
the call 


Timer 
Is not 
restarted 


T338 


Note 
2 


Disconnect 
indication 


DISC 
with 
CCBS 

possible 


REL or DISC 
received 


stop any 
tone/ 
announc . 
Send REL 


Timer 
Is not 
restarted 



NOTE 1: The network may already have applied an internal alerting supervision function; e.g. incorporated within 
call control. If such a function is known to be operating on the call, then timer T301 is not used. 

NOTE 2: These time values are set by the network operator. 

NOTE 3: When applied to the supplementary service CCBS, the timer T334 can either represent the recall timer T4 
or the notification timer TIO (see GSM 03.93). Thus the timer T334 can take two different values. GSM 
03.93 defines the range of these values. 
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Annex A (informative): 

Example of subaddress information element coding 

This annex is informative. 

This annex gives an example of how the Called Party Subaddress IE is encoded to carry subaddress digits that use IA5 
characters. This example is also applicable to the Calling Party Subaddress IE. 



7 



3 



1 1 1 ( 
called party subaddress lEI 



Length 



1 

not 
ext 



NSAP 
(X.213/ISO 8348 AD2 ) 


X 
odd/ev 

note 1 





10 10 
AFI (note 3) 



note 2 



IA5 Character (note A\ 



IA5 Character (note A\ 
+ 



octet 

1 

2 
3 



IA5 Character (note 4) 9, 

note 5 

NOTE 1 : The value of this bit has no significance when the type of subaddress is "NSAP". 

NOTE 2: These bits are spare. 

NOTE 3: The Authority and Format Identifier code 50 (in BCD) indicates that the subaddress consists of IA5 
characters (see ISO standard 8348 AD2). 

NOTE 4: IA5 character as defined in CCITT Recommendation T.50/ISO 646 and then encoded into two semi- 
octets according to the "preferred binary encoding" defined in X.213/ISO 8348 AD2. (Each character is 
converted into a number in the range 32 to 127 using the ISO 646 encoding with zero parity and the parity 
bit in the most significant position. This number is then reduced by 32 to give a new number in the range 
to 95. The new number is then treated as a pair of decimal digits with the value of each digit being 
encoded in a semi-octet.) 

NOTE 5: the number of IA5 characters in the subaddress may vary, subject to an upper limit of 19 IA5 characters. 



£75/ 



(3G TS 24.008 version 3.2.1 Release 1 999) 384 ETSI TS 1 24 008 V3.2.1 (2000-01 ) 

Annex B (normative): 
Compatibility checking 

This annex is normative. 

B.1 Introduction 

This annex describes the various compatibility checks which shall be carried out to ensure that the best matched MS and 
network capabilities are achieved on a call between a PLMN and the ISDN. 

Three different processes of compatibility checking shall be performed: 

i) at the user-to-network interface on the calling side (see B.2); 

ii) at the network-user interface on the called side (see B.3.2); 

iii) user-to-user (see B 3.3). 

NOTE: In this context and throughout this annex the term "called user" is the end point entity which is explicitly 
addressed. 

For details on the coding of the information required for compatibility checking, see annex C. 

B.2 Calling side compatibility checking 

B.2.1 Compatibility checking of the CM SERVICE REQUEST 
message 

The network shall check if the service requested in the CM SERVICE REQUEST message is permitted for that 
subscriber. 

B.2.2 Compatibility/Subscription checking of the SETUP message 

At the calling side the network shall check that the basic service(s) requested by the calling MS in the Bearer Capability 
information element(s) match(es) with the basic services provided to that subscriber by the PLMN. If for at least one 
bearer capability information element contained in the SETUP message a mismatch is detected, then the network shall 
proceed as follows: 

if the SETUP message contained two bearer capability information elements for only one of which a mismatch is 
detected, the network shall either: 

under the conditions specified in TS 27.001 (e.g. TS 61 and TS 62), accept the SETUP message with a CALL 
PROCEEDING message containing the, possibly negotiated, bearer capability information element for which 
no mismatch is detected, or 

- reject the call using one of the causes listed in annex H. 

otherwise the network shall reject the call using one of the causes listed in annex H. 

Network services are described in TS 22.002 and GSM 02.03 as bearer services and teleservices, respectively. 

B.3 Called side compatibility checking 

In this section, the word "check" means that the MS examines the contents of the specified information element. 
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B.3.1 Compatibility checking with addressing information 

If an incoming SETUP message is offered to the MS with addressing information (i.e. sub-address or called party 
number) the following shall occur: 

a) if the MS has a DDI number or a sub-address, then the information in any Called Party BCD Number or any 
Called Party subaddress information elements of the incoming SETUP message shall be checked by the MS 
against the corresponding part of the number assigned to the user (e.g. for DDI) or the user's own sub-address. 

In the cases of a mismatch, the MS shall release the call. In the case of a match, the compatibility checking 
described in B.3.2 and B.3.3 shall be performed. 

b) if the MS has no DDI number and no sub-address, then the Called Party BCD Number and Called Party Sub- 
address information element shall be ignored for the purposes of compatibility checking. The compatibility 
checking described in B.3.2 and B.3.3 shall be performed. 

NOTE: According to the user's requirements, compatibility checking can be performed in various ways from the 
viewpoint of execution order and information to be checked, e.g. first DDI number/sub -address and then 
bearer capability or vice versa. 

B.3.2 Network-to-IVIS compatibility checking 

When the network is providing a basic service at the called side, the MS shall check that the basic service(s) offered by 
the network in the Bearer Capability information element(s) match(es) the basic services that the MS is able to support. 
If a mismatch is detected, then the MS shall proceed as follows: 

if the SETUP message contained two bearer capability information elements for only one of which a mismatch is 
detected, the MS shall either: 

- under the conditions specified in TS 27.001 (e.g. TS 61 and TS 62), accept the SETUP message with a CALL 
CONFIRMED message containing the, possibly negotiated, bearer capability information element for which 
no mismatch is detected, or 

- reject the call using cause No. 88 "incompatible destination". 

otherwise the MS shall reject the offered call using a RELEASE COMPLETE message with cause No. 88 
"incompatible destination". 

When interworking with existing networks, limitations in network or distant user signalling (e.g. in the case of an 
incoming call from a PSTN or a call from an analogue terminal) may restrict the information available to the called MS 
in the incoming SETUP message (e.g. missing Bearer Capability Information Element or missing High Layer 
Compatibility Information Element). For compatibility checking, and handling of such calls see TS 27.001. 

B.3.3 User-to-User compatibility checking 

See TS 27.001. 



B.4 High layer compatibility checking 

See TS 27.001. 
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Annex C (normative): 

Low layer information coding principles 

This annex is normative. 

C.1 Purpose 

This annex describes principles that shall be used when the calling MS specifies information during call setup regarding 
low layer capabilities required in the network and by the destination terminal. Refer also to TS 27.001. 

NOTE: In this context and throughout this annex the term "called user" is the end point entity which is explicitly 
addressed. This may also be an explicitly addressed interworking unit (IWU) (see CCITT I.500-Series 
Recommendations and CCITT Recommendation X.3I case a). 



C.2 Principles 

C.2.1 Definition of types of information 

There are three different types of information that the calling PLMN user may specify during call setup to identify low 
layer capabilities needed in the network and in the destination terminal: 

a) type I information is information about the calling terminal which is only used at the destination end to allow a 
decision regarding terminal compatibility. An example would be the user information layer 3 protocol. Type I 
information is encoded in octets 5 to 7 of the low layer compatibility information element; 

b) type II information is only used by the network (PLMN) to which the calling user is connected for selection of 
PLMN specific network resources, e.g. channel type or specific functionality within the interworking function 
(IWF, see TS 09.07). This type of information is always present. An example is the connection element. Type II 
information is coded in: 

i) octet 3 of the bearer capability information element when the information transfer capability required by the 
calling user is speech ; 

ii) octets 3, 4, 5, and optionally octet 7 of the bearer capability information element when the information 
transfer capability required by the calling user is not speech; 

c) type III information is required for selection of a basic service from the choice of basic services offered by the 
network and together with type II information for selection of an appropriate interworking function (IWF, see 
TS 29.007), as well as for terminal compatibility checking at the destination terminal . An example is the 
information transfer capability. Type III information is always present and is encoded in: 

i) octet 3 of the bearer capability information element when the information transfer capability required by the 
calling user is speech ; 

ii) octets 3, 5, 6, 6a, 6b and 6c of the bearer capability information element when the information transfer 
capability required by the calling user is not speech; 



C.2. 2 Examination by network 



Type I information is user-to-user (i.e. at the calling side not examined by network) while type II and III information 
should be available for examination by the destination user and the network. 

NOTE: In the case of a mobile terminated call, if the type II and type III information is not sufficient for the 
selection of an appropriate interworking function, the type I information will also examined by the 
network. 
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C.2.3 Location of type I information 

Type I information (i.e. terminal information only significant to the called user) shall, when used, be included in the low 
layer compatibility information element. 

C.2.4 Location of types II and III information 

Type II information is included in the bearer capability information element. Type III information is also included in 
the bearer capability information element. The network may use and modify type III information (e.g. to provide 
interworking). 

In any case a modification of the bearer capability information element has to be performed when interworking to the 
fixed network (e.g. ISDN) is required, where the signalling of the radio interface has to be mapped to fixed network 
signalhng (e.g. mapping of GSM BCIE to ISDN BCIE, see TS 29.007). 

C.2.5 Relationship between bearer capability and low layer 
compatibility information elements 

There shall be no contradiction of information between the low layer compatibility and the bearer capability at the 
originating side. However, as some bearer capability code points may be modified during the transport of the call (e.g. 
by the interworking function), this principle implies that there should be minimal duplication of information between 
the bearer capability information element and the low layer compatibility information element. 

NOTE: If as a result of duplication, a contradiction occurs at the terminating side between the bearer capability 
information element and the low layer compatibility information element at the terminating side, the 
receiving entity shall ignore the conflicting information in the low layer compatibility information 
element. 
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Annex D (informative): 

Examples of bearer capability information element coding 

This annex is informative. 

This annex gives examples of the coding of bearer capability information elements for various telecommunication 
services. This annex is included for information purposes only. In the case of any inconsistency between this annex and 
TS 27.001, then TS 27.001 shall take precedence over this annex. 



D.1 Coding for speech for a full rate support only mobile 
station 

D.1 .1 Mobile station to network direction 



8 


7 6 


5 


4 


3 2 1 





10 
Bearer capability lEI 


00000001 
Length of the bearer capability contents 


1 
not 

ext 


1 
full rate 

only 



GSMB 



circ . 

mode 



speech 



octet 1 

octet 2 
octet 3 



D.1 .2 Network to mobile station direction 



) 1 
Bearer capability lEI 



00000001 
Length of the bearer capability contents 



speech 



1 





1 








not 


spare 


spare 


GSMB 


circ. 


ext 








mode 



octet 1 

octet 2 
octet 3 
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D.2 An example of a coding for modem access with V22- 
bis, 2.4 kbit/s, 8 bit no parity 

D.2.1 Mobile station to network direction, data compression 
allowed 



) 1 
Bearer capability lEI 


















1 


1 


1 


Length of the bearer capability contents 


1 


1 








10 


not 


dual, half 


GSMB 


circ . 


3 . 1 kHz audio 


ext 


preferred 




mode 


ex PLMN 


1 


1 





1 











not 


comp- 


SDU 


full 


pt to 


no 


de- 


ext 


ress . 


integrity 


dupl. 


Pt 


NIRR 


mand 


1 








1 


not 


access id. 


no rate 


1.440/450 


ext 




adaption 







1 





1 


ext 


layer 1 


default layer 1 


async 


H 1 


h H 


h 











1 


11 


ext 


1 bit 


no 


8 


2.4 kbit/s 







neg 


bits 







1 1 





Oil 


ext 


16 kbit/s 


no 


no 


(parity) none 




inter 


rate 


NICtx 


NlCrx 









1 

not 
ext 



non trans 
(RLP) 



1 
V.22 bis 



octet 1 

octet 2 
octet 3 

octet 4 

octet 5 

octet 6 
octet 6a 

octet 6b 

octet 6c 



D.2. 2 Network to mobile station direction, data compression 
possible 



1 
Bearer capability lEI 



H 








111 


Length of the bearer capability contents 


1 





1 








10 


not 


spare 


spare 


GSMB 


circ. 


3.1 kHz audio 


ext 




1 






mode 


1 


ex PLMN 


1 














not 


comp- 


SDU 


full 


pt to 


no 


de- 


ext 


ress . 


integrity 


dupl. 


pt 


NIRR 


mand 


H 1 


h H 


^- 


1 








1 


not 


access id. 


no rate 


1.440/450 


ext 




adaption 




H 1 


h H 


h 





1 





1 


ext 


layc 


2r 1 


d6 


2fault 


layer 


1 


async 












1 


ext 


1 bit 


no 


8 






neg 


bits 



Oil 
2.4 kbit/s 



octet 1 

octet 2 
octet 3 

octet 4 

octet 5 

octet 6 
octet 6a 
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1 1 
ext 16 kbit/s 
inter, rate 



1 
not 
ext 



1 

non trans 

(RLP) 



^ 1 








no 


no 


NICtx 


NICrx 









Oil 
(parity) none 



1 1 



V.22 bis 



octet 



octet 6c 
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D.3 An example of a coding for group 3 facsimile (9.6 
kbit/s, transparent) 

D.3.1 Mobile station to network direction 



) 1 
Bearer capability lEI 



111 
Length of the bearer capability contents 



1 
not 
ext 



full rate 
only MS 



GSMB 



circ. 
mode 



1 1 
facsimile 
group 3 






1 
not 
ext 



comp- 
ress . 



1 1 
unstruc- 
tured 



1 
full 
dupl . 



pt to 
pt 



no 
NIRR 



de- 
mand 



1 
not 
ext 



access id. 



no rate 
adaption 



1.440/450 



-\ 1 




1 




1 


1 













ext 


layer 1 



default 



layer 1 


sync 











1 





1 


1 


ext 


(syn) 


no 


(syn) 




9.6 kbit/s 








neg 



















1 1 


1 


1 


ext 


16 kbit/s 


no 
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D.3.2 Network to mobile station direction 
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Annex E (informative): 

Comparison between call control procedures specified in TS 

24.008 and CCITT Recommendation Q.931 

This annex is informative. 

This annex summarizes a comparison of the procedures for call control as specified in CCITT Recommendation Q.93 1 
(blue book) and TS 24.008. 

If no comment is given, it means that the procedures specified in CCITT Recommendation Q.931 and TS 24.008 are 
similar. However, it should be noted that even in such cases the procedures may be described in slightly different ways 
in the two documents. 



Table E.1/TS 24.008: Circuit-switched call control procedures 



Procedure | 

Call establishment at 
the originating 
interface 

- call request 

- B-channel selection 

originating 



Q.931 



GSMfi)24.008 



overlap sending 




5 


1 


3 




invalid call 
information 







1 


4 




call proceeding, 
en-bloc sending 




5 


1 


5. 


1 


call proceeding, 
overlap sending 




5 


1 


5. 


2 


notification of 
interworking at the 
originating interf. 




1 


6 




call confirmation 
indication 




1 


7 




call connected 






1 


8 




call rejection 




5 


1 


9 




transit network 
selection 




5 


1 


IC 





5.1 



5.1.1 



5.1.2 



5.2.1 



5.2.1.1.1 

en-bloc sending only 

not applicable 



not supported 
5.2.1.1.2 

5.2.1.1.3 

not supported 

5.2.1.1.4 

5.2.1.1.5 

5.2.1.1.6 
5.2.1.1.7 
5.2.1.1.8 
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Table E.1/TS 24.008: Circuit-switched call control procedures (continued) 



Procedure 



Q.931 



GSMfi)24.008 





Call establishment at 
the destination 
interface 


5 


2 







5.2.2 


- call indication 


5 


2 


1 


5.2.2.1 

procedure for multiple 
terminal configuration 
not required, i.e. 
delivery of SETUP 
messages on broadcast 
data links is not 
supported 


- compatibility 
checking 


5 


2 


2 


5.2.2.2 

equivalent, except that 
delivery of SETUP mes- 
sages on broadcast data 
links is not supported 


- B-channel selection 
destination 




2 


3 


not applicable 


- overlap receiving 




2 


4 


not supported 


- call confirmation 

information 


5 


2 


5 


5.2.2.3 

equivalent, except that 
delivery of SETUP mes- 
sages on broadcast data 
links is not supported 


- notification of 

interworking at the 
terminating interf. 




2 


6 


5.2.2.4 


- call accept 
indication 


5 


2 


7 


5.2.2.5 


- active indication 


5 


2 


8 


5.2.2.6 

equivalent, except that 

SETUP messages are not 

sent on broadcast data 

links 


- non-selected user 
clearing 




2 


9 


not applicable 
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Table E.1/TS 24.008: Circuit-switched call control procedures (continued) 



Procedure 



Q.931 



GSMfi>24. 008 



H 

Call clearing 


5 


3 






5.4 


- terminology 


5 


3 


1 




5.4.1 

terminology adapted to 

GSMB applications 


- exception 

conditions 


5 


3 


2 




5.4.2 

only case a) of section 
5.3.2 of Rec. Q. 931 ap- 
plies. All other excep- 
tions apply to functions 
which are not relevant 
to GSMB 


- clearing initiated 
by the user/MS 


5 


3 


3 




5.4.3 


- clearing initiated 
by the network 


5 


3 


4 




5.4.4 


- clearing when 

tones /announcements 
are provided 


5 


3 


4 


1 


5.4.4.1.1 and 5.4.4.2.1 
exception: if not already 
connected, the traffic 
channel is connected in 
order to provide the 
tone /announcement 


- clearing when 

tones /announcements 

are not provided 


5 


3 


4 


2 


5.4.4.1.2 and 5.4.4.2.3 


- completion of 
clearing 


5 


3 


4 


3 


5.4.4.1.3 and 5.4.4.2.5 


Clear collision 




3 


C 






5.4.5 
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Table E.1/TS 24.008: Circuit-switched call control procedures (continued) 



Procedure 



Q.931 



GSMfi)24.008 










In-band tones and 


5.4 


5.5.1 


announcements 






Restart procedure 


5.5 


not supported 


Call rearrangements 


5.6 


5.3.4 

call suspension/call re- 
establishment not suppor- 
ted on the radio path. 
The functions, if requi- 
red, are to be supported 
locally in the MS. On the 
radio interface, the 
notification procedure 
of Rec. Q.931 (section 
5.6.7) applies 


Call collisions 


5.7 


5.5.2 

call collisions cannot 

occur 


Emergency call esta- 


not specified 


5.2.1.2 


blishment at the ori- 


not supported 




ginating interface 






In-call modification 


Annex 
Rec. Q.931 is 
incomplete 
with regard 
to in-call 
modification 
procedures 


5.3.4 


DTMF protocol control 


not specified 


5.3.3 


procedures 


not supported 




Call re-establishment 


not specified 

not supported 


5.5.4 


Status enquiry 


5.8.10, 


5.5.3 


procedure 


5.8.11 




User-to-user 


7 


GSMB04.10 


signalling 






User notification 


5.9 


5.3.1 


procedure 
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Annex F (informative): 

GSIVI specific cause values for radio resource management 

See 04.18 
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Annex G (informative): 

GSIVI specific cause values for mobility management 

This annex is informative. It describes the cause values for the mobility management procedures for non-GPRS services 
(MM) and GPRS services (GMM). Sections Gl to G5 are valid for both MM and GMM. However, the following codes 
are applicable for non-GPRS services only: 

#38 Call cannot be identified 

Section G.6 applies only for GMM procedures. 

G.1 Causes related to MS identification 

Cause value = 2 IMSI unknown in HLR 

This cause is sent to the MS if the MS is not known (registered) in the HLR. This cause code does not affect 
operation of the GPRS service, although is may be used by a GMM procedure. 

Cause value = 3 Illegal MS 

This cause is sent to the MS when the network refuses service to the MS either because an identity of the MS is 
not acceptable to the network or because the MS does not pass the authentication check, i.e. the SRES received 
from the MS is different from that generated by the network. 

Cause value = 4 IMSI unknown in VLR 

This cause is sent to the MS when the given IMSI is not known at the VLR. 
Cause value = 5 IMEI not accepted 

This cause is sent to the MS if the network does not accept emergency call establishment using an IMEI. 
Cause value = 6 Illegal ME 

This cause is sent to the MS if the ME used is not acceptable to the network, e.g. blacklisted. 

G.2 Cause related to subscription options 

Cause value =11 PLMN not allowed 

This cause is sent to the MS if it requests location updating in a PLMN where the MS, by subscription or due to 
operator determined barring is not allowed to operate. 

Cause value =12 Location Area not allowed 

This cause is sent to the MS if it requests location updating in a location area where the MS, by subscription, is 
not allowed to operate. 

Cause value =13 Roaming not allowed in this location area 

This cause is sent to an MS which requests location updating in a location area of a PLMN which offers roaming 
to that MS in that Location Area, by subscription. 



G.3 Causes related to PLMN specific network failures 
and congestion /Authentication Failures 

Cause value = 7 CS MAC failure 
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This cause is sent to the MSC if the SIM detects that the MAC in the authentication request message is not fresh 
(see TS 33.102) 

Cause value = 15 CS Synch failure 

This cause is sent to the MSC if the SIM detects that the SQN in the authentication request message is out of 
range (see TS 33.102) 

Cause value =17 Network failure 

This cause is sent to the MS if the MSC cannot service an MS generated request because of PLMN failures, e.g. 
problems in MAP. 

Cause value = 22 Congestion 

This cause is sent if the service request cannot be actioned because of congestion (e.g. no channel, facility 
busy/congested etc.) 



G.4 Causes related to nature of request 

Cause value = 32 Service option not supported 

This cause is sent when the MS requests a service/facility in the CM SERVICE REQUEST message which is not 
supported by the PLMN. 

Cause value = 33 Requested service option not subscribed 

This cause is sent when the MS requests a service option for which it has no subscription. 

Cause value = 34 Service option temporarily out of order 

This cause is sent when the MSC cannot service the request because of temporary outage of one or more 
functions required for supporting the service. 

Cause value = 38 Call cannot be identified 

This cause is sent when the network cannot identify the call associated with a call re-establishment request. 

G.5 Causes related to invalid messages 

Cause value = 95 Semantically incorrect message. 

See annex H, section H.5.10. 
Cause value = 96 Invalid mandatory information. 

See annex H, section H.6.1. 
Cause value = 97 Message type non-existent or not implemented. 

See annex H, section H.6.2. 
Cause value = 98 Message not compatible with protocol state. 

See annex H, section H.6.3. 
Cause value = 99 Information element non-existent or not implemented 

See annex H, section H.6.4. 
Cause value =100 Conditional IE error. 

See annex H, section H.6.5. 
Cause value =101 Message not compatible with protocol state 
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See annex H, section H.6.6. 
Cause value =111 Protocol error, unspecified 
See annex H, section H.6.8. 



G.6 Additional cause codes for GIVIIVI 

Cause value = 7 GPRS services not allowed 

This cause is sent to the MS if it requests an IMS! attach for GPRS services, but is not allowed to operate GPRS 

services. 

Cause value = 8 GPRS services and non-GPRS services not allowed 

This cause is sent to the MS if it requests a combined IMSI attach for GPRS and non-GPRS services, but is not 
allowed to operate either of them. 

Cause value = 9 MS identity cannot be derived by the network 

This cause is sent to the MS when the network cannot derive the MS's identity from the P-TMSI in case of inter- 
SGSN routing area update. 

Cause value =10 Implicitly detached 

This cause is sent to the MS either if the network has implicitly detached the MS, e.g. some while after the Mobile 
reachable timer has expired, or if the GMM context data related to the subscription dose not exist in the SGSN 
e.g. because of a SGSN restart. 

Cause value =16 MSC temporarily not reachable 

This cause is sent to the MS if it requests a combined GPRS attach or routing are updating in a PLMN where the 
MSC is temporarily not reachable via the GPRS part of the GSM network. 

Cause value = 7 PS MAC failure 

This cause is sent to the SGSN if the SIM detects that the MAC in the authentication request message is not fresh 
(see TS 33.102) 

Cause value = 15 PS Synch failure 

This cause is sent to the SGSN if the SIM detects that the SQN in the authentication request message is out of 
range (see TS 33.102) 
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Annex H (informative): 

GSIVI specific cause values for call control 

This annex is informative. 



H.1 Normal class 

H.1.1 Cause No. 1 -unassigned (unallocated) number- 

This cause indicates that the destination requested by the mobile station cannot be reached because, ahhough the 
number is in a valid format, it is not currently assigned (allocated). 

H.1 .2 Cause No. 3 -no route to destination- 

This cause indicates that the called user cannot be reached because the network through which the call has been routed 
does not serve the destination desired. 

H.1 .3 Cause No. 6 -channel unacceptable- 

This cause indicates the channel most recently identified is not acceptable to the sending entity for use in this call. 

H.1 .4 Cause No. 8 -operator determined barring- 

This cause indicates that the MS has tried to access a service that the MS's network operator or service provider is not 
prepared to allow. 

H.1 .5 Cause No.1 6 -normal call clearing- 

This cause indicates that the call is being cleared because one of the users involved in the call has requested that the call 
be cleared. 

Under normal situations, the source of this cause is not the network. 

H.1. 6 Cause No.1 7 -user busy- 

This cause is used when the called user has indicated the inability to accept another call. 
It is noted that the user equipment is compatible with the call. 

H.1 .7 Cause No. 18 -no user responding- 

This cause is used when a user does not respond to a call establishment message with either an alerting or connect 
indication within the prescribed period of time allocated (defined by the expiry of either timer T303 or T3 10). 

H.1 .8 Cause No. 1 9 -user alerting, no answer- 

This cause is used when a user has provided an alerting indication but has not provided a connect indication within a 
prescribed period of time. 
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H.1 .9 Cause No. 21 -call rejected- 



This cause indicates that the equipment sending this cause does not wish to accept this call, although it could 
have accepted the call because the equipment sending this cause is neither busy nor incompatible. 

H.1 .1 Cause No. 22 number changed- 

This cause is returned to a calling mobile station when the called party number indicated by the calling mobile station is 
no longer assigned. The new called party number may optionally be included in the diagnostic field. If a network does 
not support this capability, cause No. 1 "unassigned (unallocated) number" shall be used. 

H.1 .1 1 Cause No. 26 -non-selected user clearing- 

Not supported. Treated as cause no. 31. 

H.1. 12 Cause No. 27 -destination out of order- 

This cause indicates that the destination indicated by the mobile station cannot be reached because the interface to the 
destination is not functioning correctly. The term "not functioning correctly" indicates that a signalling message was 
unable to be delivered to the remote user; e.g., a physical layer or data link layer failure at the remote user, user 
equipment off-line, etc. 

H.1 .13 Cause No. 28 -invalid number format (incomplete number)- 

This cause indicates that the called user cannot be reached because the called party number is not a valid format or is 
not complete. 

H.1 .14 Cause No. 29 -facility rejected- 

This cause is returned when a facility requested by user can not be provided by the network. 

H.1 .1 5 Cause No. 30 -response to STATUS ENQUIRY- 

This cause is included in STATUS messages if the message is sent in response to a STATUS ENQUIRY message. See 
also section 5.5.3. 

H.1. 16 Cause No. 31 -normal, unspecified- 

This cause is used to report a normal event only when no other cause in the normal class applies. 



H.2 Resource unavailable class 

H.2.1 Cause No. 34 -no circuit/channel available- 

This cause indicates that there is no appropriate circuit/channel presently available to handle the call. 

H.2. 2 Cause No. 38 -network out of order- 

This cause indicates that the network is not functioning correctly and that the condition is likely to last a relatively lon^ 
period of time; e.g., immediately re-attempting the call is not likely to be successful. 
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H.2.3 Cause No. 41 -temporary failure- 

This cause indicates that the network is not functioning correctly and that the condition is not likely to last a long period 
of time; e.g., the mobile station may wish to try another call attempt almost immediately. 

H.2.4 Cause No. 42 -switching equipment congestion- 

This cause indicates that the switching equipment generating this cause is experiencing a period of high traffic. 

H.2.5 Cause No. 43 -access information discarded- 

This cause indicates that the network could not deliver access information to the remote user as requested; i.e., a user- 
to-user information, low layer compatibility, high layer compatibility, or sub-address as indicated in the diagnostic. 

It is noted that the particular type of access information discarded is optionally included in the diagnostic. 

H.2.6 Cause No. 44 -requested circuit/channel not available- 

This cause is returned when the circuit or channel indicated by the requesting entity cannot be provided by the other 
side of the interface. 

H.2.7 Cause No. 47 -resource unavailable, unspecified- 

This cause is used to report a resource unavailable event only when no other cause in the resource unavailable class 
applies. 



H.3 Service or option not available class 
H.3.1 Cause No. 49 -quality of service unavailable- 

This cause indicates to the mobile station that the requested quality of service, as defined in CCITT Recommendation 
X.213, cannot be provided. 

H.3. 2 Cause No. 50 -Requested facility not subscribed- 

This cause indicates that the requested supplementary service could not be provided by the network because the user 
has no completed the necessary administrative arrangements with its supporting networks. 

H.3. 3 Cause No. 55 -Incoming calls barred within the CUG- 

This cause indicates that although the called party is a member of the CUG for the incoming CUG call, incoming calls 
are not allowed within this CUG. 

H.3. 4 Cause No. 57 -bearer capability not authorized- 

This cause indicates that the mobile station has requested a bearer capability which is implemented by the equipment 
which generated this cause but the mobile station is not authorized to use. 

H.3. 5 Cause No. 58 -bearer capability not presently available- 

This cause indicates that the mobile station has requested a bearer capability which is implemented by the equipment 
which generated this cause but which is not available at this time. 
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H.3.6 Cause No. 63 -service or option not available, unspecified- 

This cause is used to report a service or option not available event only when no other cause in the service or option not 
available class applies. 

H.3.7 Cause No. 68 -ACM equal to or greater than ACMmax- 

This cause is used by the mobile to indicate that call clearing is due to ACM being greater than or equal to ACMmax. 



H.4 Service or option not implemented class 

H.4.1 Cause No. 65 "bearer service not implemented" 

This cause indicates that the equipment sending this cause does not support the bearer capability requested. 
H.4. 2 Cause No. 69 "Requested facility not implemented" 

This cause indicates that the equipment sending this cause does not support the requested supplementary service. 

H.4. 3 Cause No. 70 "only restricted digital information bearer capability is available" 

This cause indicates that one equipment has requested an unrestricted bearer service, but that the equipment 
sending this cause only supports the restricted version of the requested bearer capability. 

H.4. 4 Cause No. 79 "service or option not implemented, unspecified" 

This cause is used to report a service or option not implemented event only when no other cause in the service or 
option not implemented class applies. 

H.5 Invalid message (e.g., parameter out of range) class 

H.5.1 Cause No. 81 "invalid transaction identifier value" 

This cause indicates that the equipment sending this cause has received a message with a transaction identifier 
which is not currently in use on the MS-network interface. 

H.5. 2 Cause No. 87 "user not member of CUG" 

This cause indicates that the called user for the incoming CUG call is not a member of the specified CUG. 

H.5. 3 Cause No. 88 "incompatible destination" 

This cause indicates that the equipment sending this cause has received a request to establish a call which has 
low layer compatibility, high layer compatibility, or other compatibility attributes (e.g., data rate) which cannot 
be accommodated. 

H.5.4 Cause No. 91 "invalid transit network selection" 

For further study. Treated as cause no. 95. 
H.5. 5 Cause No. 95 "semantically incorrect message" 

This cause is used to report receipt of a message with semantically incorrect contents (see section 8.8). 

H.6 Protocol error (e.g., unknown message) class 

H.6.1 Cause No. 96 "invalid mandatory information" 

This cause indicates that the equipment sending this cause has received a message with a non-semantical 
mandatory IE error (see section 8.5). 
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H.6.2 Cause No. 97 "message type non-existent or not implemented" 

This cause indicates that the equipment sending this cause has received a message with a message type it does 
not recognize either because this is a message not defined, or defined but not implemented by the equipment 
sending this cause. 

H.6.3 Cause No. 98 "message type not compatible with protocol state" 

This cause indicates that the equipment sending this cause has received a message not compatible with the 
protocol state (section 8.4). 

H.6.4 Cause No. 99 "information element non-existent or not implemented" 

This cause indicates that the equipment sending this cause has received a message which includes information 
elements not recognized because the information element identifier is not defined or it is defined but not 
implemented by the equipment sending the cause. However, the information element is not required to be 
present in the message in order for the equipment sending the cause to process the message. 

H.6.5 Cause No. 100 "conditional IE error" 

This cause indicates that the equipment sending this cause has received a message with conditional IE errors (see 
section 8.7.2). 

H.6.6 Cause No. 101 "message not compatible with protocol state" 

This cause indicates that a message has been received which is incompatible with the protocol state or that a 
STATUS message has been received indicating an incompatible call state. 

H.6.7 Cause No. 102 "recovery on timer expiry" 

This cause indicates that a procedure has been initiated by the expiry of a timer in association with TS 24.008 
error handling procedures. 

H.6.8 Cause No. Ill "protocol error, unspecified" 

This cause is used to report a protocol error event only when no other cause in the protocol error class applies. 



H.7 Interworking class 

H.7.1 Cause No. 127 "interworking, unspecified" 

This cause indicates that there has been interworking with a network which does not provide causes for actions it 
takes; thus, the precise cause for a message which is being sent cannot be ascertained. 
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Annex I (informative): 

GPRS specific cause values for session management 

This annex is informative. 

1.1 Causes related to nature of request 

Cause value = 25 LLC or SNDCP failure (GSM only) 

This cause code is used by the MS indicate that a PDP context is deactivated because of a LLC or SNDCP 
failure ( e.g. if the SM receives a SNSM-STATUS. request message with cause "DM received " or " invalid XID 
response ", see GSM 04.65 [78]) 

Cause value = 26 Insufficient resources 

This cause code is used by the MS or by the network to indicate that a PDP context activation request Secondary 
PDP context activation request or PDP context modification request cannot be accepted due to insufficient 
resources. 

Cause value = 27 Unknown or missing access point name 

This cause code is used by the network to indicate that the requested service was rejected by the external packet 
data network because the access point name was not included although required or if the access point name 
could not be resolved. 

Cause value = 28 Unknown PDP address or PDP type 

This cause code is used by the network to indicate that the requested service was rejected by the external packet 
data network because the PDP address or type could not be recognised. 

Cause value = 29 User authentication failed 

This cause code is used by the network to indicate that the requested service was rejected by the external packet 
data network due to a failed user authentication. 

Cause value = 30 Activation rejected by GGSN 

This cause code is used by the network to indicate that the requested service was rejected by the GGSN. 

Cause value = 31 Activation rejected, unspecified 

This cause code is used by the network to indicate that the requested service was rejected due to unspecified 
reasons. 

Cause value = 32 Service option not supported 

This cause code is used by the network when the MS requests a service which is not supported by the PLMN. 
Cause value = 33 Requested service option not subscribed 

See Annex G, section 4. 
Cause value = 34 Service option temporarily out of order 

See Annex G, section 4. 

Cause value = 35 NSAPI already used 

This cause code is used by the network to indicate that the NSAPI requested by the MS in the PDP context 
activation or Secondary PDP context activation request is already used by another active PDP context of this 
MS. 
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Cause value = 36 Regular PDP context deactivation 

This cause code is used to indicate a regular MS or network initiated PDP context deactivation. 

Cause value = 37 QoS not accepted 

This cause code is used by the MS if the new QoS cannot be accepted that were indicated by the network in the 
PDP Context Modification procedure. 

Cause value = 38 Network failure 

This cause code is used by the network to indicate that the PDP context deactivation is caused by an error 
situation in the network. 

Cause value = 39 Reactivation requested 

This cause code is used by the network to request a PDP context reactivation after a GGSN restart. 

Cause value = 40 Feature not supported 

This cause code is used by the MS to indicate that the PDP context activation initiated by the network is not 
supported by the MS. 

Cause value = 41 TFT already used 

This cause code is used by the network to indicate that the TFT indicated in the secondary PDP context 
activation request is already used. 

Cause value = 42 invalid TFT 

This cause code is used by the network to indicate that the TFT indicated in the secondary PDP context 
activation request is invalid. 

Cause value = 43 unknown PDP context 

This cause code is used by the network to indicate that the primary PDP context specified in the secondary PDP 
context activation request is not active. 



1.2 Causes related to invalid messages 

Cause value = 81 Invalid transaction identifier value. 

See annex H, section H.5.1. 
Cause value = 95 Semantically incorrect message. 

See annex H, section H.5.10. 
Cause value = 96 Invalid mandatory information. 

See annex H, section H.6.1. 
Cause value = 97 Message type non-existent or not implemented. 

See annex H, section H.6.2. 
Cause value = 98 Message not compatible with protocol state. 

See annex H, section H.6.3. 
Cause value = 99 Information element non-existent or not implemented 

See annex H, section H.6.4. 
Cause value =100 Conditional IE error. 

See annex H, section H.6.5. 
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Cause value =101 Message not compatible with protocol state 

See annex H, section H.6.6. 
Cause value =111 Protocol error, unspecified 

See annex H, section H.6.8. 
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Annex J (informative): 

Algorithm to encode frequency list information elements 

See 04.18 
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Annex K (informative): 

Default Codings of Information Elements 

This annex is informative. 

The information in this annex does NOT define the value of any lEI for any particular message. This annex exists to aid 
the design of new messages, in particular with regard to backward compatibility with phase 1 mobile stations. 

K.1 Common information elements. 

For the common information elements types listed below, the default coding of information element identifier bits is 
summarized in table K.l/TS 24.008. 

Table K.1/TS 24.008: Default information element identifier coding 
for common information elements 



























Reference 


























section 


8 


7 


6 


5 


4 


3 


2 


1 












1 


: 


: 


: 


- 


- 


- 


- 


Type 1 info 
elements 










1 


1 


1 


1 


- 


- 


- 


- 


Note 1 













: 


: 


: 


: 


: 


: 


: 


Type 3 & 4 info 
elements 



















1 











1 


Note 1 



















1 








1 


1 


Location Area 
Identification 


10 


5 


1 


3 











1 





1 


1 


1 


Mobile Identity 


10 


5 


1 


4 











1 


1 











Note 1 



















1 


1 


1 


1 


1 


Note 1 
















1 

















Mobile Station 
classmark 3 

Spare Half Octet 


10 
10 


5 
5 


1 
1 


7 
8 




All 


other 


values are reserved 











NOTE 1 : These values were allocated but never used in earlier phases of the protocol. 
NOTE 2: For GPRS common information elements no default values are defined: 

K.2 Radio Resource management information elements. 

See 04.18 Annex K. 

K.3 Mobility management information elements. 

For the mobility management information elements listed below, the default coding of the information element 
identifier bits is summarized in table K.3/TS 24.008. 
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Table K.3/TS 24.008: Default information element identifier coding for mobility management 

information elements 



10 1 
110 
1110 

10 10 



Type 1 info elements 

- - - -Note 

- - - -Note 

- - - -Note 

- - - -Type 2 info elements 
1 Follow-on Proceed 

1 OCTS Permission 



Type 3 & 4 info elements 

10 INote 

10 1 ONote 

10 10 ONote 

All other values are reserved 



Reference 
Section 



10.5.3.7 
10.5.3.10 



NOTE: These values were allocated but never used in earlier versions of the protocol 



K.4 Call control information elements. 

For the call control information elements listed below, the default coding of the information element identifiers is 
defined in table K.4/TS 24.008. 
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Table K.4/TS 24.008: Default information element identifier coding for call control information 

elements 

















Reference 
















section 


8 7 


6 


5 


4 


3 


2 1 












1 : 


: 


: 


- 


- 


- - 


Type 1 info elements 
















1 


- 


- 


- - 


shift 


10 


5 


4 


2 
















and 




3 





1 


1 


- 


- 


- - 


Note 










1 





1 


- 


- 


- - 


Repeat indicator 


10 


5 


4 


22 


1 


1 











Type 2 information 
elements 

























More data 


10 


5 


4 


19 














1 


CLIR Suppression 


10 


5 


4 


11a 














1 


CLIR Invocation 


10 




4 


lib 














1 1 


Reverse call setup 
direction 


10 




4 


22a 


: 












Type 3 & 4 info 
elements 






















1 





Bearer capability 


10 


5 


4 


5 











1 








Cause 


10 


5 


4 


11 








1 





1 





Note 
















1 





1 


1 


Call Control 
Capabilities 


10 




4 


5a 








1 


1 


1 





Facility 


10 


5 


4 


15 








1 


1 


1 


1 


Progress indicator 


10 




4 


21 





1 








1 





Auxiliary states 


10 




4 


4 





1 








1 


1 1 


Note 













1 





1 


1 





Keypad facility 


10 


5 


4 


17 





1 


1 





1 





Signal 


10 




4 


23 


1 








1 


1 





Connected number 


10 




4 


13 


1 








1 


1 


1 


Connected subaddress 


10 


5 


4 


14 


1 





1 


1 


1 





Calling party BCD 
number 


10 




4 


9 


1 





1 


1 


1 


1 


Calling party subad 


10 




4 


10 


1 





1 


1 


1 


1 


Called party BCD 
number 


10 


5 


4 


7 


1 


1 





1 


1 


1 


Called party subad 


10 




4 


8 


1 


1 


1 





1 





Redirecting Party BCD 


10 




4 


21a 


1 


1 


1 


1 


1 


1 


Redirecting Party 
subaddress 


10 


5 


4 


21b 


1 


1 


1 


1 


1 





Low layer compatib. 


10 




4 


18 


1 


1 


1 


1 


1 


1 


High layer compatib. 


10 




4 


16 


1 


1 


1 


1 


1 


1 


User-user 


10 


5 


4 


25 


1 


1 


1 


1 


1 


1 1 


88 version indicator 


10 


5 


4 


24 



NOTE: These values were allocated but never used in earlier phases of the protocol. 
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Annex L (informative): 

Allocation of responsibilities between STCs 
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Annex M (normative): 

Additional Requirements for backward compatibility with 

PCS 1900 for NA revision ME 

This annex is normative and provides additional requirements to support network mechanisms for backward 
compatibility with PCS 1900 for NA revision mobile equipments (applicable until July 1, 1998). 

PCS 1900 for NA revision mobile equipments are defined to understand Mobile Network Codes made of up to 2 
digits. However federal regulation mandates that a 3-digit MNC shall be allocated by each administration to network 
operators. Therefore each network operator is identified by a 3-digit Mobile Country Code and a 3-digit Mobile 
Network Code. An operator whose network code complies to the allocation principle specified for PCS 1900 for NA 
and wants to achieve for a transition period of time the backward compatibility with PCS 1900 for NA revision 
mobile equipments shall apply the following: 

The network shall send over the air interface the 3-digit Mobile Country Code and only the two most significant 
digits of the Mobile Network Code (the value of the "digit" sent instead of the 3rd digit is specified in TS 
24.008, section 10.5.1.3) (see Note). 

When a PCS 1900 for NA (revision greater than 0) mobile equipment recognizes over the air the Mobile Country Code 
and the two most significant digits of the Mobile Network Code as being the HPLMN codes of the current IMSI, the 
mobile equipment shall take into account the value of the sixth IMSI digit read from the SIM. If this value matches to a 
value contained in the limited set of values for the least significant MNC digit assigned by the number administration 
bodies for PCS 1900 for NA then the following applies for the mobile equipment: 

The value sent over the air instead of the 3rd MNC digit in the Location Area Identification (for coding see TS 
24.008, section 10.5.1.3) shall be interpreted as the value of the sixth IMSI digit read from the SIM. 



NOTE: 



It is still a network operator option to apply this requirement after July 1, 1998. However, in this case the 
following shall be considered: 

1. Network selection considerations for overlapping networks: 

Networks overlapping to the HPLMN, identified over the radio interface by an identical combination 
MCCl MCC2 MCC3 MNCl MNC2 (possible after July 1, 1998) may be selectable by PCS 1900 for NA 
mobile equipments revision with the same priority as the HPLMN or presented to the user as the 
HPLMN 

2. Roaming considerations: 

Roamers (SIM) from networks identified by an identical combination MCCl MCC2 MCC3 MNCl 
MNC2 (possible after July 1, 1998) when roaming into the operator network with PCS 1900 for NA 
mobile equipments revision 0, may cause these equipments to exhibit an unpredictable behaviour (e.g. 
looping in the HPLMN selection and registration procedures). 

Home subscribers (SIM) roaming with PCS 1900 for NA mobile equipments revision into networks 
identified by an identical combination MCCl MCC2 MCC3 MNCl MNC2 (possible after July 1, 1998), 
may consider being attached to the HPLMN. 
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Annex N (informative): 
Change Record 

Based on 24.008 version 7. 1.0 and inclusion of CRs 



Tdoc SPEC CR 


RE 


VER 


SUBJECT 


CAT 


NEW 


P-99-510 24.008 A371 2 7.1.0 BCIE modifications due to EDGE B 3.0.0 


P-99-523 24.008 A515 


1 


7.1.0 |Split of 24.008 in RR and CN parts (Section 7, "L3 


F 


3.0.0 


P-99-388 24.008 A562 




7.1 .0 CR to 24.008 due to EDGE SMG2 EDGE WS 


B 


3.0.0 


P-99-523 24.008 A567 


1 


7.1.0 Split of 24.008 in RR and ON parts 


F 


3.0.0 


P-99-390 24.008 A592j 


1 


7.1.0 


GSM 400 and Mobile Station Classmark 


B 


3.0.0 


P-99-523 24.008 A611 


1 


7.1.0 


Split of 24.008 in RR and CN parts 


F 


3.0.0 


P-99-523 24.008 A613 


1 


7.1.0 


Split of 24.008 in RR and CN parts 


F 


3.0.0 


P-99-512 24.008 A621 


2 


7.1 .0 : IE Daylight saving time 


B 


3.0.0 


P-99-461 24.008 A687 




7.1.0 


Transfer of the LSA Information to the MS 


B 


3.0.0 


NP-99268 24.008 002 




3.0.1 


GPRS phase 1 for PCS 1900 


A 


3.1.0 


NP-99268 24.008 004 




3.0.1 


GMM attempt counters 


A 


3.1.0 


NP-99268 24.008 005 




3.0.1 


Cell Change during GPRS Detach procedure ■ A 


3.1.0 


NP-99268 24.008 006 




3.0.1 


RA change in GMM-ROUTING-AREA-UPDATE-INITIATED A ,3.1.0 


NP-99268 24.008 007 




3.0.1 


Non power down caused Detach during Attach 


A 


3.1.0 


NP-99268 24.008 008 




3.0.1 


"Receive N-PDU Number list" IE padding bits 


A 


3.1.0 


NP-99268 24.008 009 




3.0.1 


PDP context deactivation caused by LLC failure 


A 


3.1.0 


NP-99268 24.008 010 


1 


3.0.1 


CM request and combined GMM procedures 


A 


3.1.0 


NP-99268 24.008 013 


1 


3.0.1 


TMSI status indication 


A 


3.1.0 


NP-99269 24.008 014 


1 


3.0.1 


BCIE modifications due to ECSD asymmetry 


B 


3.1.0 


NP-99268 24.008 015 




3.0.1 


RAU Complete not returned for TMSI deallocation. Some 


F 


3.1.0 


NP-99268 24.008 016 




3.0.1 


Clarification of the Detach Type "re-attach required" or "re- 


F 


3.1.0 


NP-99268 24.008 018 




3.0.1 


Addition of Access Point Name in Request PDP Context 


B 


3.1.0 


NP-99268 24.008 019 


1 


3.0.1 


CR clash in sec. 4.7.3.2.6 


A 


3.1.0 


NP-99268 24.008 020 




3.0.1 


CR clash in sec. 4.7.3.2.3.2 and 4.7.5.2.3.2 


A 


3.1.0 


NP-99268 24.008 021 


1 


3.0.1 


T3212 restart after RAU reject 


A 


3.1.0 


NP-99268 24.008 022 




3.0.1 


New State GMM-REGISTERED.IMSI-DETACH-INITIATED 


A 


3.1.0 


NP-99268 24.008 023 




3.0.1 


Deactivate AA PDP context request message 


A 


3.1.0 


NP-99268 24.008 024 


2 


3.0.1 


Coding Scheme in Network Name IE 


A 


3.1.0 


NP-99269 24.008 028 


1 


3.0.1 


MS Radio Access Capability IE 


B 


3.1.0 


NP-99268 24.008 Oil 


1 


3.0.1 


T3212 restart after GPRS detach 


A 


3.1.0 


NP-99452 24.008 003 


3 


3.1 .0 Clarification of DTMF procedure 


C 


3.2.0 


NP-99441 24.008 026 2 


3.1.0 Extended Transaction Identifier Reject 


C 


3.2.0 


NP-99445 24.008 033 5 


3.1.0 


Updating Session Management (SM) for R99 





3.2.0 


NP-99447 24.008 034 


1 


3.1.0 


Mobile Station Classmark 3 Clarification 


F 


3.2.0 


NP-99447 24.008 036 ' 


1 


3.1 .0 Proposal of Classmark 2 for UMTS 


B 


3.2.0 


NP-99449 24.008 037 


1 


3.1 .0 Proposal of UMTS/GSM bearer capability 


B 


3.2.0 


NP-99443 24.008 039 j 


4 


3.1.0 Service Request 


B 


3.2.0 


NP-99443 24.008 040 


3 


3.1.0 


Introduction of Follow-on mechanism for PS 


B 


3.2.0 


NP-99445 24.008 041 


1 


3.1.0 


Uplink L3 Message Sequencing 





3.2.0 


NP-99451 24.008 042 


4 


3.1.0 


Adaptation of MM and GMM messages to incorporate UMTS 





3.2.0 


NP-99443 24.008 043 , 


2 


3.1.0 


Network Requested PDP Context Activation 





3.2.0 


NP-99443 24.008 047 




3.1.0 


Clarification of DRX 


A 


3.2.0 


NP-99442 24.008 051 ^ 


2 


3.1.0 


Emergency Call handling in Packet only networks 


B 


3.2.0 


NP-99447 24.008 052 


1 


3.1 .0 Addition of MS Classmark 2 in Location Updating Request 


B 


3.2.0 


NP-99445 24.008 053 


2 


3.1.0 


GMM State Model for UMTS 


B 


3.2.0 


NP-99445 24.008 054 


3 


3.1.0 


READY timer not apphcable for UMTS 


B 


3.2.0 
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lNP-99445 '24.008 056 


1 


3.1 .0 1 Periodic RA Update Timer function and Mobile Reachable 


B 


3.2.0 


NP-99445 24.008 057 


1 


3.1.0 


P-TMSI reallocation procedure 


B 


3.2.0 


NP-99445 24.008 058 


1 


3.1.0 


Detach procedure 


B 


3.2.0 


NP-99445 24.008 059 


2 


3.1.0 


UMTS <-> GPRS Intersystem change (handover) 


B 


3.2.0 


NP-99445 24.008 060 


1 


3.1.0 Change of Network Mode of operation 


B 


3.2.0 


NP-99445 24.008 061 


1 


3.1 .0 MS modes of operation in UMTS 


B 


3.2.0 


NP-99444 24.008 063 


2 


3.1.0 


Mobile Station Classmark 850 and 1900 band included 


B 


3.2.0 


NP-99443 24.008 064 


4 


3.1.0 


UMTS adaptation to section 4.7.1 


B 


3.2.0 


NP-99445 24.008 069 


1 


3.1.0 


24.008 Vocabulary 


F 


3.2.0 


NP-99506 24.008 071 


1 


3.1.0 


Mirror R99 LCS CR to GSM 04.08 


A 


3.2.0 


NP-99450 24.008 072 


2 


3.1.0 


Parallel handling of multiple user application flows 


B 


3.2.0 


NP-99452 24.008 074 


1 


3.1.0 


GSM cleanup 


C 


3.2.0 


NP-99452 24.008 075 1 


2 


3.1.0 


UMTS cleanup 


C 


3.2.0 


NP-99445 24.008 080 




3.1.0 Identity procedure 


B 


3.2.0 


NP-99445 24.008 081 


1 


3.1.0 


Alignment of MM for R99 


B 


3.2.0 


NP-99445 24.008 082 


1 


3.1.0 


Attach procedure for R99 


B 


3.2.0 


NP-99445 24.008 083 


1 


3.1 .0 'Routing Area updating procedure for R99 


B 


3.2.0 


NP-99445 24.008 085 




3.1.0 Paging for R99 


B 


3.2.0 


NP-99450 24.008 086 


1 


3.1.0 


QoS enhancements 


C 


3.2.0 


NP-99445 24.008 089 


1 


3.1.0 


Transaction Identifier Extension 


C 


3.2.0 
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